CVE-2025-40661
10.06.2025, 10:15
An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theoption parameter equal to 0, 1 or 2 in /administer/selectionnode/selection.asp.Enginsight
| Vendor | Product | Version |
|---|---|---|
| acc | dm_corporative_cms | 𝑥 < 2025.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration