A Local File Inclusion vulnerability has been found in Axiell Iguana CMS. Due to insufficient neutralisation of user input on the url parameter on the Proxy.type.php endpoint, external users are capable of accessing files on the server.
References
Link | Resource |
---|---|
https://csirt.divd.nl/CVE-2022-45052/ | Third Party Advisory |
https://csirt.divd.nl/DIVD-2022-00064/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: DIVD
Published: 2023-01-04T18:11:20.473Z
Updated: 2024-01-02T18:32:23.317Z
Reserved: 2022-11-08T14:17:26.668Z
Link: CVE-2022-45052
JSON object: View
NVD Information
Status : Modified
Published: 2023-01-04T19:15:09.447
Modified: 2024-01-02T19:15:10.030
Link: CVE-2022-45052
JSON object: View
Redhat Information
No data.
CWE