CVE-2025-40661
EUVD-2025-1764810.06.2025, 10:15
An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theĀ option parameter equal to 0, 1 or 2 in /administer/selectionnode/selection.asp.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| acc | dm_corporative_cms | 𝑥 < 2025.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration