CVE-2023-36994: Travianz Project Travianz
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
In TravianZ 8.3.4 and 8.3.3, Incorrect Access Control in the installation script allows an attacker to overwrite the server configuration and inject PHP code.
Affected products
- Travianz Project Travianz: version 8.3.3 only; version 8.3.4 only
Published 2023-07-07. Last modified 2026-06-17.