References https://nvd.nist.gov/vuln/detail/CVE-2023-53873 https://www.exploit-db.com/exploits/51725 https://www.vulncheck.com/advisories/syncbreeze-denial-of-service-via-login-endpoint-overflow https://www.tenable.com/cve/CVE-2023-53873 https://vuldb.com/vuln/336528 https://access.redhat.com/security/cve/cve-2023-53873 https://strobes.co/vi/cve/CVE-2023-53873/ https://cve.imfht.com/detail/CVE-2023-53873?lang=en
Related VulnerabilitiesPoCCVE-2025-51683: mJobTime <= 15.7.2 - Unauthenticated Blind SQL Injection to RCEPoCCVE-2026-48558: SimpleHelp <=5.5.15 - OIDC JWT Authentication BypassPoCCVE-2026-81578: PaperCut NG/MF <=26.0.4 - Unauthenticated ConfigEditor Access via Tapestry Complex-DirectPoCCVE-2025-15403: RegistrationMagic <= 6.0.7.1 - Privilege EscalationPoCCVE-2026-61511: vBulletin 6.x - Remote Code ExecutionPoCCVE-2026-15826: User Profile Builder 3.16.4 - Unauthenticated Authentication BypassPoCCVE-2015-7501: Red Hat JBoss - Insecure DeserializationPoCCVE-2026-1115: parisneo/lollms < 2.2.0 - Authenticated Stored XSSPoCCVE-2026-15733: WGDashboard <= 4.3.2 - Authenticated OS Command Injection /etc/passwd ReadPoCCVE-2026-65442: FormCraft3 <= 3.9.15 - Server-Side Request ForgeryMicrosoft SharePoint /_layouts/15/ToolPane.aspx 代码执行漏洞(CVE-2025-53770)PowerJob 存在信息泄露漏洞 (CVE-2025-11580)Gogs /api/v1/orgs/:orgname/teams 信息泄露漏洞(CVE-2026-52815)