CVE-2023-33831: Frangoteam Fuxa

Critical severity, CVSS 9.8. EPSS: 26% chance of exploitation in the next 30 days.

A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute arbitrary commands via a crafted POST request.

Affected products

Published 2023-09-18. Last modified 2026-06-17.