CVE-2020-19890
EUVD-2020-1178624.08.2020, 15:15
DBHcms v1.2.0 has an Arbitrary file read vulnerability in dbhcms\mod\mod.editor.php $_GET['file'] is filename,and as there is no filter function for security, you can read any file's content.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dbhcms_project | dbhcms | 1.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration