← Volver a CVEs
CVE-2018-10521
N/ADescripcion
In CMS Made Simple (CMSMS) through 2.2.7, the "file move" operation in the admin dashboard contains an arbitrary file movement vulnerability that can cause DoS, exploitable by an admin user, because config.php can be moved into an incorrect directory.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado4/27/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
cmsmadesimple:cms_made_simple
Debilidades (CWE)
CWE-434
Referencias
https://github.com/itodaro/cmsms_cve/blob/master/README.md(cve@mitre.org)
https://github.com/itodaro/cmsms_cve/blob/master/README.md(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.