Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Niuzhi

#41359of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2023-11731
6.5
2023-08-11
Unknown · Cms-Dev/Cms · CVE-2020-24804
**Name of the Vulnerable Software and Affected Versions** cms-dev/cms version 1.4.rc1 **Description** The issue allows attackers to gain sensitive information via audit logs due to a plaintext password vulnerability in AddAdmin.py. **Recommendations** For version 1.4.rc1, consider disabling the AddAdmin.py script until a patch is available to prevent attackers from gaining sensitive information. Restrict access to audit logs to minimize the risk of exploitation.