First published: Mon Feb 12 2018(Updated: )
EmpireCMS 6.6 through 7.2 allows remote attackers to discover the full path via an array value for a parameter to class/connect.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phome Empirecms | >=6.6<=7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.