CVE-2017-1000195
17.11.2017, 02:29
October CMS build 412 is vulnerable to PHP object injection in asset move functionality resulting in ability to delete files limited by file permissions on the server.Enginsight
| Vendor | Product | Version |
|---|---|---|
| octobercms | october | 𝑥 ≤ 1.0.412 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration