CVE-2023-2551
published 2023-05-05CVE-2023-2551: PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.
PriorityP350high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
1.91%
77.3th percentile
PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bumsys_project | bumsys | < 2.1.1 | 2.1.1 |
| unilogies | unilogies_bumsys | >= unspecified < 2.1.1 | 2.1.1 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv3.07.2HIGHCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
cisa9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2j97-56x9-c2hp: PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2
ghsa_unreviewed·2023-05-05
CVE-2023-2551 [HIGH] CWE-829 GHSA-2j97-56x9-c2hp: PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2
PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.
CISA
Oracle Fusion Middleware Unspecified Vulnerability
cisa·2023-11-16·CVSS 9.8
CVE-2020-2551 [CRITICAL] Oracle Fusion Middleware Unspecified Vulnerability
Vulnerability: Oracle Fusion Middleware Unspecified Vulnerability
Affected: Oracle Fusion Middleware
Oracle Fusion Middleware contains an unspecified vulnerability in the WLS Core Components that allows an unauthenticated attacker with network access via IIOP to compromise the WebLogic Server.
Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Notes: https://www.oracle.com/security-alerts/cpujan2020.html; https://nvd.nist.gov/vuln/detail/CVE-2020-2551
Remediation Due Date: 2023-12-07
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-05-05
Published