CVE-2020-22535: Medium severity pbootcms vulnerability
Published Jul 9, 2021
·Updated
Incorrect Access Control vulnerability in PbootCMS 2.0.6 via the list parameter in the update function in upgradecontroller.php.
Affected Software
1 affected component
Pbootcms Pbootcms=2.0.6
Event History
Jul 9, 2021
CVE Published
via MITRE·03:57 PM
Data Sourced
via MITRE·03:57 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this PbootCMS vulnerability?
The vulnerability ID for this PbootCMS vulnerability is CVE-2020-22535.
2
What is the severity of CVE-2020-22535?
The severity of CVE-2020-22535 is medium with a CVSS score of 6.5.
3
How does the vulnerability in PbootCMS 2.0.6 occur?
The vulnerability in PbootCMS 2.0.6 occurs due to incorrect access control in the list parameter of the update function in upgradecontroller.php.
4
Which version of PbootCMS is affected by this vulnerability?
The vulnerability affects PbootCMS version 2.0.6.
5
Is there a fix available for CVE-2020-22535?
Currently, there is no known fix available for CVE-2020-22535. It is recommended to follow the advisory and monitor for any updates or patches released by the vendor.