eXtplorer 2.1.14 contains an authentication bypass vulnerability that allows attackers to login without a password by manipulating the login request. Attackers can exploit this flaw to upload malicious PHP files and execute remote commands on the vulnerable file management system.
References
Configurations
No configuration.
History
14 Jan 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.exploit-db.com/exploits/51067 - |
13 Jan 2026, 23:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-13 23:16
Updated : 2026-01-14 20:16
NVD link : CVE-2023-54335
Mitre link : CVE-2023-54335
CVE.ORG link : CVE-2023-54335
JSON object : View
Products Affected
No product.
CWE
CWE-306
Missing Authentication for Critical Function
