CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. See the original NVD description below for full technical details.
CVE
CVE-2023-38948
Severity
HIGH
CVSS
7.2
EPSS
0.86%
Original NVD Description
An arbitrary file download vulnerability in the /c/PluginsController.php component of jizhi CMS 1.9.5 allows attackers to execute arbitrary code via downloading a crafted plugin.
Related CVEs
Other vulnerabilities affecting the same vendor(s)