← Vulnerability feed

Vulnerability record · CVE-2023-34747 · published 14 June 2023

CVE-2023-34747: Ujcms unrestricted file upload vulnerability

UUjcms · Ujcms

File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.

9.8 CVSS 3.1 Critical EPSS 20% · top 2.6% CWE-434 · Unrestricted file upload
9.8CVSS 3.1 base score
20%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://github.com/ujcms/ujcms/issues/4 ExploitIssue TrackingVendor Advisory
https://github.com/ujcms/ujcms/issues/4 ExploitIssue TrackingVendor Advisory

Track CVE-2023-34747 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-51350Ujcms authentication bypass by spoofing vulnerabilityA spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-…EPSS 1.3%9.8CVE-2023-34865Ujcms path traversal vulnerabilityDirectory traversal vulnerability in ujcms 6.0.2 allows attackers to move files via the rename feature.EPSS 1.2%7.5CVE-2023-34878Ujcms observable discrepancy vulnerabilityAn issue was discovered in Ujcms v6.0.2 allows attackers to gain sensitive information via the dir parameter to /api/backend/core/web-file-html/downl…EPSS 0.70%6.5CVE-2023-3231Ujcms information exposure vulnerabilityA vulnerability has been found in UJCMS up to 6.0.2 and classified as problematic. This vulnerability affects unknown code of the component ZIP Packa…EPSS 0.82%6.3CVE-2024-12483Ujcms improper authorization vulnerabilityA vulnerability classified as problematic has been found in Dromara UJCMS up to 9.6.3. This affects an unknown part of the file /users/id of the comp…EPSS 3.6%6.1CVE-2023-24369Ujcms cross-site scripting vulnerabilityA cross-site scripting (XSS) vulnerability in UJCMS v4.1.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload …EPSS 0.43%5.4CVE-2024-55452Ujcms open redirect vulnerabilityA URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carousel items. T…EPSS 0.27%5.4CVE-2023-51806Ujcms unrestricted file upload vulnerabilityFile Upload vulnerability in Ujcms v.8.0.2 allows a local attacker to execute arbitrary code via a crafted file.EPSS 0.55%

Source: NIST National Vulnerability Database (record CVE-2023-34747), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.