CVE-2021-47904 - PhreeBooks 5.2.3 - Remote Code Execution

CVE-2021-47904 - PhreeBooks 5.2.3 - Remote Code Execution

CVE ID : CVE-2021-47904 Published : Jan. 23, 2026, 5:16 p.m. | 1 hour, 20 minutes ago Description : PhreeBooks 5.2.3 contains an authenticated file upload vulnerability in the Image Manager that allows remote code execution. Attackers can upload a malicious PHP web shell by exploiting unrestricted file type uploads to gain command execution on the server. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Jan. 23, 2026
Affected Product: PHP
Impact: remote code execution