CVE-2023-6886 is a critical code injection vulnerability affecting the Role Management Page in xnx3 wangmarket 6.1. This flaw allows remote attackers to execute arbitrary code with high impact on confidentiality, integrity, and availability, as indicated by its CVSS score of 9.8. While public exploit details exist, there is no evidence of active exploitation or readily available exploit modules like Metasploit or Nuclei, and community discussion is minimal. The vulnerability is assigned CWE-94, indicating improper control of generated code.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.1CPE matchmatch criteria | cpe:2.3:a:wang.market:wangmarket:6.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.