CVE-2023-43234: Dedebiz

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

DedeBIZ v6.2.11 was discovered to contain multiple remote code execution (RCE) vulnerabilities at /admin/file_manage_control.php via the $activepath and $filename parameters.

Affected products

  • Dedebiz Dedebiz: version 6.2.11 only

Published 2023-09-27. Last modified 2026-07-09.