Security Advisory

CVE-2023-53889

7.2
HIGH

Vulnerability Description

Perch CMS 3.2 contains a remote code execution vulnerability that allows authenticated administrators to upload arbitrary PHP files through the assets management interface. Attackers can upload a malicious .phar file with embedded system command execution capabilities to execute arbitrary commands on the server.
Published Date December 15, 2025
Official Source NIST NVD Advisory