PT-2024-24172 · Dotcms · Dotcms
Published
2024-04-01
·
Updated
2025-06-27
·
CVE-2024-3164
CVSS v3.1
4.5
Medium
| Vector | AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
dotCMS version 22.02
Description
The issue concerns the dotCMS dashboard, specifically the Tools and Log Files tabs under System → Maintenance Portlet. This portlet, which is intended for Admin access, is accessible to anyone with the portlet, not just CMS Admins. As a result, users with site admin roles, but not system admin roles, can access sensitive information, including database usernames and passwords under Log Files, and download database dumps and other dotCMS content under Tools. Only system admins should have access to System Maintenance. This issue relates to broken access control and insecure design.
Recommendations
Update dotCMS to a version that includes the fix for this issue.
Restrict access to the Maintenance Portlet to system admins only.
As a temporary workaround, consider disabling access to the Tools and Log Files tabs under System → Maintenance Portlet for users with site admin roles until a patch is available.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dotcms