Description
BurgerEditor 3.2.0 through 3.4.0 contains an issue with unrestricted upload of file with dangerous type. If this vulnerability is exploited, an arbitrary file may be uploaded by an attacker who can log in to the product, potentially allowing arbitrary PHP code to be executed may be caused.
Published: 2026-09-10
Score: 8.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Arbitrary PHP code execution via unrestricted file upload
Action: Apply Patch
AI Analysis

Impact

BurgerEditor versions 3.2.0 to 3.4.0 include an unrestricted upload feature that accepts files of dangerous types. An authenticated attacker who can log into the application can submit a file containing malicious PHP code, which the server may store and later execute. This flaw provides the attacker with the ability to run arbitrary PHP code on the host, compromising confidentiality, integrity, and availability of the system.

Affected Systems

D-ZERO CO., LTD. BurgerEditor 3.2.0 through 3.4.0 are vulnerable. No later sub‑versions are affected according to the current data. The vulnerability applies to all installations that expose the file upload functionality to logged‑in users.

Risk and Exploitability

With a CVSS score of 8.5, the vulnerability is classified as high impact. The EPSS score is not available, and it is not listed in CISA KEV, indicating no known exploits are tracked. Exploitation requires authentication to BurgerEditor, meaning only users with valid credentials can trigger the upload. Once the file lands in a web‑executable directory, the attacker can run PHP code with the privileges of the web server.

Generated by OpenCVE AI on September 10, 2026 at 03:39 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade BurgerEditor to the latest patched release that removes the unrestricted upload flaw.
  • If an upgrade is not possible, configure the application to reject uploads that have PHP or other executable extensions and allow only safe file types such as images or PDFs.
  • Store uploaded files outside the web root or set appropriate permissions to prevent them from being executed by the web server.

Generated by OpenCVE AI on September 10, 2026 at 03:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 11:45:00 +0000

Type Values Removed Values Added
First Time appeared D-zero
D-zero burgereditor
Vendors & Products D-zero
D-zero burgereditor

Thu, 10 Sep 2026 04:00:00 +0000

Type Values Removed Values Added
Title Unrestricted File Upload Allowing Arbitrary PHP Execution in BurgerEditor

Thu, 10 Sep 2026 02:30:00 +0000

Type Values Removed Values Added
Description BurgerEditor 3.2.0 through 3.4.0 contains an issue with unrestricted upload of file with dangerous type. If this vulnerability is exploited, an arbitrary file may be uploaded by an attacker who can log in to the product, potentially allowing arbitrary PHP code to be executed may be caused.
Weaknesses CWE-434
References
Metrics cvssV3_0

{'score': 6.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

D-zero Burgereditor
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2026-09-10T17:41:24.347Z

Reserved: 2026-09-01T05:55:36.966Z

Link: CVE-2026-84063

cve-icon Vulnrichment

Updated: 2026-09-10T17:40:12.294Z

cve-icon NVD

Status : Deferred

Published: 2026-09-10T03:17:00.370

Modified: 2026-09-10T18:18:09.180

Link: CVE-2026-84063

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T11:30:06Z

Weaknesses
  • CWE-434

    Unrestricted Upload of File with Dangerous Type