CVE-2023-38692: FIT2CLOUD Cloudexplorer Lite

Critical severity, CVSS 9.8. EPSS: 3.4% chance of exploitation in the next 30 days.

CloudExplorer Lite is an open source, lightweight cloud management platform. Versions prior to 1.3.1 contain a command injection vulnerability in the installation function in module management. The vulnerability has been fixed in v1.3.1. There are no known workarounds aside from upgrading.

Affected products

  • FIT2CLOUD Cloudexplorer Lite: before 1.3.1 (fixed in 1.3.1)

Published 2023-08-04. Last modified 2026-06-17.