CVE-2023-30330

SoftExpert (SE) Excellence Suite 2.x versions before 2.1.3 is vulnerable to Local File Inclusion in the function /se/v42300/generic/gn_defaultframe/2.0/defaultframe_filter.php.
References
Link Resource
https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 Exploit Third Party Advisory
https://www.exploit-db.com/exploits/51404 Exploit Third Party Advisory VDB Entry
https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 Exploit Third Party Advisory
https://www.exploit-db.com/exploits/51404 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:softexpert:excellence_suite:*:*:*:*:*:*:*:*

History

24 Jan 2025, 20:15

Type Values Removed Values Added
CWE CWE-426

21 Nov 2024, 08:00

Type Values Removed Values Added
References () https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 - Exploit, Third Party Advisory () https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 - Exploit, Third Party Advisory
References () https://www.exploit-db.com/exploits/51404 - Exploit, Third Party Advisory, VDB Entry () https://www.exploit-db.com/exploits/51404 - Exploit, Third Party Advisory, VDB Entry

23 May 2023, 19:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References (MISC) https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 - (MISC) https://github.com/Filiplain/LFI-to-RCE-SE-Suite-2.0 - Exploit, Third Party Advisory
References (MISC) https://www.exploit-db.com/exploits/51404 - (MISC) https://www.exploit-db.com/exploits/51404 - Exploit, Third Party Advisory, VDB Entry
CPE cpe:2.3:a:softexpert:excellence_suite:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

12 May 2023, 01:38

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-12 01:15

Updated : 2025-01-24 20:15


NVD link : CVE-2023-30330

Mitre link : CVE-2023-30330

CVE.ORG link : CVE-2023-30330


JSON object : View

Products Affected

softexpert

  • excellence_suite
CWE
NVD-CWE-noinfo CWE-426

Untrusted Search Path