Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Fkzhangsao

#41492of 53,630
6.5Total CVSS
Vulnerabilities · 1
PT-2021-10768
6.5
2021-07-09
Pbootcms · Pbootcms · CVE-2020-22535
**Name of the Vulnerable Software and Affected Versions** PbootCMS version 2.0.6 **Description** The issue is related to an Incorrect Access Control vulnerability. It can be exploited via the `list` parameter in the `update` function in `upgradecontroller.php`. **Recommendations** For PbootCMS version 2.0.6, consider restricting access to the `update` function in `upgradecontroller.php` to minimize the risk of exploitation. Avoid using the `list` parameter in the affected function until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.