admin/filemanager/ (aka the File Manager) in EZTechhelp EZCMS 1.2 and earlier does not require authentication, which allows remote attackers to create, modify, read, and delete files.
References
Configurations
Information
Published : 2008-06-30 11:24
Updated : 2017-09-28 18:31
NVD link : CVE-2008-2920
Mitre link : CVE-2008-2920
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
ezcms
- eztechhelp_ezcms