Dhcms · Dhcms · CVE-2020-19275
Name of the Vulnerable Software and Affected Versions:
dhcms version 2017-09-18
Description:
An Information Disclosure issue exists when entering invalid characters after the normal interface, causing an error that leaks the physical path.
Recommendations:
For dhcms version 2017-09-18, consider restricting input to prevent the entry of invalid characters that could trigger the error and leak the physical path. At the moment, there is no information about a newer version that contains a fix for this issue.