CVE-2025-40660
10.06.2025, 10:15
An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theoption parameter equal to 0, 1 or 2 in /administer/select node/data.asp?mode=catalogue&id1=1&id2=1session=&cod=1&networks=0.Enginsight
| Vendor | Product | Version |
|---|---|---|
| acc | dm_corporative_cms | 𝑥 < 2025.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration