Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html/ad/adpesquisasql/request/processVariavel.php gridValoresPopHidden parameter.
id: CVE-2023-47253
info:
name: Qualitor <= 8.20 - Remote Code Execution
author: s4e-io
severi
...