CVE-2014-9148
16.10.2017, 15:29
Fiyo CMS 2.0.1.8 allows remote attackers to bypass intended access restrictions and execute the (1) "Install and Update" or (2) Backup super administrator function via the view parameter in a direct request to fiyo/dapur.Enginsight
Vendor | Product | Version |
---|---|---|
fiyo | fiyo_cms | 𝑥 ≤ 2.0.1.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References