CVE-2025-40660
EUVD-2025-1764910.06.2025, 10:15
An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theĀ option parameter equal to 0, 1 or 2 in /administer/select node/data.asp?mode=catalogue&id1=1&id2=1session=&cod=1&networks=0.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| acc | dm_corporative_cms | 𝑥 < 2025.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration