CVE-2020-18875
18.08.2021, 17:15
Incorrect Access Control in DotCMS versions before 5.1 allows remote attackers to gain privileges by injecting client configurations via vtl (velocity) files.
Vendor | Product | Version |
---|---|---|
dotcms | dotcms | 𝑥 < 5.1.0 |
𝑥
= Vulnerable software versions