CRITICAL
Extplorer
CVE published 2026-01-13
CVE-2023-54335
CVE-2023-54335 is a critical authentication bypass vulnerability in eXtplorer 2.1.14 that allows attackers to login without a password. This flaw can be exploited to upload malicious PHP files and execute remote commands on the vulnerable file management system. The vulnerability has a CVSS score of 9.3 and is considered critical. Defenders and system administrators responsible for eXtplorer installations [truncated]