baserCMS (baserCMS 4.1.0.1 and earlier versions, baserCMS 3.0.15 and earlier versions) allows remote attackers to bypass access restriction in mail form to view a file which is uploaded by a site user via unspecified vectors.
References
Link | Resource |
---|---|
https://basercms.net/security/JVN67881316 | Vendor Advisory |
http://jvn.jp/en/jp/JVN67881316/index.html | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-06-26 07:29
Updated : 2018-08-21 05:37
NVD link : CVE-2018-0575
Mitre link : CVE-2018-0575
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
basercms
- basercms