PT-2023-32765 · Thecosy · Thecosy Icecms

Zero121

·

Published

2023-12-13

·

Updated

2024-05-17

·

CVE-2023-6762

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Thecosy IceCMS version 2.0.1
Description A critical vulnerability was found in Thecosy IceCMS, affecting an unknown function of the file /article/DelectArticleById/ of the component Article Handler. This issue leads to permission problems and can be exploited remotely.
Recommendations For Thecosy IceCMS version 2.0.1, consider disabling access to the /article/DelectArticleById/ endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2023-6762

Affected Products

Thecosy Icecms