CVE Vulnerabilities

CVE-2023-33604

Published: Jun 07, 2023 | Modified: Jun 13, 2023
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Imperial CMS v7.5 was discovered to contain an arbitrary file deletion vulnerability via the DelspReFile function in /sp/ListSp.php. This vulnerability is exploited by attackers via a crafted POST request.

Affected Software

Name Vendor Start Version End Version
Imperial_cms Imperial_cms_project 7.5 (including) 7.5 (including)

References