PatchSiren

Extplorer CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Extplorer CVE published 2026-01-13

CVE-2023-54335

CVE-2023-54335 is a critical authentication bypass vulnerability in eXtplorer 2.1.14 that allows attackers to login without a password. This flaw can be exploited to upload malicious PHP files and execute remote commands on the vulnerable file management system. The vulnerability has a CVSS score of 9.3 and is considered critical. Defenders and system administrators responsible for eXtplorer installations [truncated]