1 results (0.031 seconds)

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 1

Path Traversal in HongCMS v4.0.0 allows remote attackers to view, edit, and delete arbitrary files via a crafted POST request to the component "/hcms/admin/index.php/language/ajax." Un Salto de Ruta en HongCMS versión v4.0.0, permite a atacantes remotos visualizar, editar y eliminar archivos arbitrarios por medio de una petición POST diseñada al componente "/hcms/admin/index.php/language/ajax" • https://github.com/Neeke/HongCMS/issues/11 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •