CVE-2008-3203
EUVD-2008-319317.07.2008, 13:41
js/pages/pages_data.php in AuraCMS 2.2 through 2.2.2 does not perform authentication, which allows remote attackers to add, edit, and delete web content via a modified id parameter.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| auracms | auracms | 2.2 |
| auracms | auracms | 2.2.1 |
| auracms | auracms | 2.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References