Sploitus

CVE-2023-49544

1 known exploit for CVE-2023-49544

A local file inclusion (LFI) in Customer Support System v1 allows attackers to include internal PHP files and gain unauthorized acces via manipulation of the page= parameter at /customer_support/index.php.

Affected products
Customer Support System
oretnom23 Customer Support System
= 1.0
Fix
Available
CVSS 3.1
4.9 MEDIUM
EPSS
0.8% (53th percentile)
Weakness
CWE-89
NVD status
Analyzed
Published
2024-03-01
CVE-2023-49544 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2023-49544

Proof-of-concept code and exploit modules indexed by Sploitus