Aug. 4, 2023, 3:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

PyroCMS 3.9 contains a remote code execution (RCE) vulnerability that can be exploited through a server-side template injection (SSTI) flaw. This vulnerability allows a malicious attacker to send customized commands to the server and execute arbitrary code on the affected system.

code code execution cve exploited flaw injection malicious rce remote code remote code execution send server ssti system template template injection vulnerability

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Manager - Vendor management/ Compliance

@ Sprinklr | India - Haryana - Gurgaon

DevSecOps Engineer

@ Swiss Re | Hyderabad, TG, IN

Cyber Security Architect

@ Endeavour Group | Surry Hills, Australia

Principal Product Manager (Network/Security Management) - NetSec

@ Palo Alto Networks | Bengaluru, India

Lead Security Analyst

@ Deloitte | Sydney, NSW, AU