CVE-2023-5966
MEDIUMEspoCRM < 7.5.2 - Authenticated Arbitrary PHP Code Execution via Extension Deployment Form
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-5966. PoCs published by ll104567.
AI-analyzed exploit summary This PoC demonstrates an arbitrary file upload vulnerability in EspoCRM 2.7.4 and earlier, allowing code execution via the add extension functionality. The provided zip file uploads a web shell to /webshell.php.
Description
An authenticated privileged attacker could upload a specially crafted zip to the EspoCRM server in version 7.2.5, via the extension deployment form, which could lead to arbitrary PHP code execution.
Exploits (1)
This PoC demonstrates an arbitrary file upload vulnerability in EspoCRM 2.7.4 and earlier, allowing code execution via the add extension functionality. The provided zip file uploads a web shell to /webshell.php.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L