CVE-2023-4704
01.09.2023, 10:15
External Control of System or Configuration Setting in GitHub repository instantsoft/icms2 prior to 2.16.1-git.Enginsight
Vendor | Product | Version |
---|---|---|
instantcms | instantcms | 𝑥 < 2.16.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-15 - External Control of System or Configuration SettingOne or more system settings or configuration elements can be externally controlled by a user.
- CWE-610 - Externally Controlled Reference to a Resource in Another SphereThe product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.
References