ZeroHour

CVE-2020-26167

CVSS 3.1
9.8 critical
EPSS
3%p88
Published
()
Modified
Description

In FUEL CMS 11.4.12 and before, the page preview feature allows an anonymous user to take complete ownership of any account including an administrator one.

Vendors
thedaylightstudio
Products
fuel cms
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.