A vulnerability, which was classified as problematic, was found in Xunrui CMS 4.61. Affected is an unknown function of the file /config/myfield/test.php. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-224238 is the identifier assigned to this vulnerability.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://vuldb.com/?id.224238 | vdb entry third party advisory technical description |
https://vuldb.com/?ctiid.224238 | third party advisory permissions required signature |
https://github.com/2714925725/CMS-bug/blob/main/Informationdisclosure-1.md | exploit |