Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cfcw-xxj2-5vrw

Опубликовано: 06 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.5
CVSS3: 5.3

Описание

A vulnerability was detected in kalyan02 NanoCMS up to 0.4. Affected by this issue is some unknown functionality of the file /data/pagesdata.txt of the component User Information Handler. Performing a manipulation results in direct request. It is possible to initiate the attack remotely. The exploit is now public and may be used. You should change the configuration settings.

A vulnerability was detected in kalyan02 NanoCMS up to 0.4. Affected by this issue is some unknown functionality of the file /data/pagesdata.txt of the component User Information Handler. Performing a manipulation results in direct request. It is possible to initiate the attack remotely. The exploit is now public and may be used. You should change the configuration settings.

EPSS

Процентиль: 9%
0.00032
Низкий

5.5 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-425

Связанные уязвимости

CVSS3: 5.3
nvd
1 день назад

A vulnerability was detected in kalyan02 NanoCMS up to 0.4. Affected by this issue is some unknown functionality of the file /data/pagesdata.txt of the component User Information Handler. Performing a manipulation results in direct request. It is possible to initiate the attack remotely. The exploit is now public and may be used. You should change the configuration settings.

EPSS

Процентиль: 9%
0.00032
Низкий

5.5 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-425