PT-2022-11452 · Unknown · Batflat Cms
0Xosmia
·
Published
2022-03-01
·
Updated
2022-03-09
·
CVE-2021-41652
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
BatFlat CMS version 1.3.6
Description
Insecure permissions in the file database.sdb allow attackers to dump the entire database.
Recommendations
For BatFlat CMS version 1.3.6, consider changing the permissions of the database.sdb file to prevent unauthorized access until a patch is available.
Fix
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Batflat Cms