Описание
tasks/feed/readRSS.cfm in Mura CMS before 6.2 allows attackers to bypass intended access restrictions by leveraging the "draggable feeds" feature.
Ссылки
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 6.1 (включая)
cpe:2.3:a:getmura:mura_cms:*:*:*:*:*:*:*:*
EPSS
Процентиль: 89%
0.04241
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-611
Связанные уязвимости
CVSS3: 6.5
github
больше 3 лет назад
tasks/feed/readRSS.cfm in Mura CMS before 6.2 allows attackers to bypass intended access restrictions by leveraging the "draggable feeds" feature.
EPSS
Процентиль: 89%
0.04241
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-611