CVE-2023-26262
14.03.2023, 21:15
An issue was discovered in Sitecore XP/XM 10.3. As an authenticated Sitecore user, a unrestricted language file upload vulnerability exists the can lead to direct code execution on the content management (CM) server.Enginsight
Vendor | Product | Version |
---|---|---|
sitecore | experience_manager | 𝑥 ≤ 10.3 |
sitecore | experience_platform | 𝑥 < 10.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration