Exploit Title: XiboCMS 3.3.4- Remote Code Execution
Google Dork: N/A
Date: 2025-11-18
Exploit Author: complexusprada
Vendor Homepage: https://xibo.org.uk/
Software Link: https://github.com/xibosignage/xibo-cms
Version: 1.8.0 - 2.3.16, 3.0.0 - 3.3.4
Tested on: Ubuntu Linux (Docker), Xibo CMS 3.3.4
CVE: CVE-2023-33177
GHSA: GHSA-jj27-x85q-crqv
Category: webapps
"""
Vulnerability Description:
Xibo CM...
