xunruicms up to v4.5.1 was discovered to contain a remote code execution (RCE) vulnerability in /index.php. This vulnerability allows attackers to execute arbitrary code via a crafted GET request.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/P0wfuu/xunruicms-RCE |
![]() ![]() |
History
Wed, 18 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 | |
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-18T14:19:19.143Z
Reserved: 2021-08-09T00:00:00.000Z
Link: CVE-2021-38243

Updated: 2024-08-04T01:37:16.346Z

Status : Modified
Published: 2023-09-27T15:15:54.463
Modified: 2025-06-18T15:15:19.803
Link: CVE-2021-38243

No data.