PT-2023-16811 · Fastcms · Fastcms

Ha1Yuyiqiyin

+1

·

Published

2023-03-06

·

Updated

2024-05-17

·

CVE-2023-1191

CVSS v2.0

5.8

Medium

VectorAV:N/AC:L/Au:M/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions fastcms (affected versions not specified)
Description A problematic vulnerability has been found in fastcms, affecting an unknown part of the file admin/TemplateController.java of the component ZIP File Handler. The manipulation leads to path traversal, and it is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2023-1191

Affected Products

Fastcms