ZeroHour

CVE-2021-37270

CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

There is an unauthorized access vulnerability in the CMS Enterprise Website Construction System 5.0. Attackers can use this vulnerability to directly access the specified background path without logging in to the background to obtain the background administrator authority.

Vendors
s-cms
Products
cms enterprise website construction system
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.