CVE-2023-36994: Travianz Project Travianz

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

In TravianZ 8.3.4 and 8.3.3, Incorrect Access Control in the installation script allows an attacker to overwrite the server configuration and inject PHP code.

Affected products

Published 2023-07-07. Last modified 2026-06-17.