SEMCMS 4.8 is vulnerable to... CVE-2024-28405

- AV AC AU C I A
发布: 2024-03-29
修订: 2024-04-01

SEMCMS 4.8 is vulnerable to Incorrect Access Control. The code installs SEMCMS_Funtion.php before checking if the admin is a valid user in the admin page because authentication function is called from there, users gain admin privileges.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息