A vulnerability classified as problematic has been found in fastcms. This affects an unknown part of the file admin/TemplateController.java of the component ZIP File Handler. The manipulation leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The associated identifier of this vulnerability is VDB-222363.
References
Link Resource
https://github.com/ha1yuYiqiyinHangzhouTechn0logy/fastcms/blob/main/README.md Exploit Third Party Advisory
https://github.com/my-fastcms/fastcms/issues/1 Exploit Issue Tracking Vendor Advisory
https://vuldb.com/?ctiid.222363 Permissions Required Third Party Advisory
https://vuldb.com/?id.222363 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2023-03-06T07:21:45.248Z

Updated: 2023-10-21T07:39:19.257Z

Reserved: 2023-03-06T07:21:24.612Z


Link: CVE-2023-1191

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-03-06T08:15:09.083

Modified: 2024-05-17T02:17:53.347


Link: CVE-2023-1191

JSON object: View

cve-icon Redhat Information

No data.

CWE