CVE-2023-2059: Dedecms

Medium severity, CVSS 5.3. EPSS: 2.4% chance of exploitation in the next 30 days.

A vulnerability was found in DedeCMS 5.7.87. It has been rated as problematic. Affected by this issue is some unknown functionality of the file uploads/include/dialog/select_templets.php. The manipulation leads to path traversal: '..\filedir'. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-225944.

Affected products

  • Dedecms Dedecms: version 5.7.87 only

Published 2023-04-14. Last modified 2026-06-17.