ZeroHour

CVE-2020-24136

PoC
CVSS 3.1
8.6 high
EPSS
2%p82
Published
()
Modified
Description

Directory traversal in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an application via the pagename parameter to wex/html.php.

Vendors
wcms
Products
wcms
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.