CyberRota Analysis
AI-GeneratedA critical vulnerability in Xerte Online Tools enables remote code execution by allowing an attacker to modify the antivirus binary path in the server settings to point to a PHP interpreter. This misconfiguration permits the upload and execution of malicious PHP scripts, posing a significant risk to the integrity and security of the affected systems. Organizations using Xerte Online Tools should prioritize immediate remediation to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability in the Xerte Online Tools allows for RCE through the antivirus binary path in the tools server settings, which can be changed to a PHP interpreter, allowing an attacker to upload PHP data that will then be executed.