First published: Wed Jan 19 2022(Updated: )
Taocms v3.0.2 was discovered to contain an arbitrary file read vulnerability via the path parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
taogogo taoCMS | =3.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-46203 is an arbitrary file read vulnerability in Taocms v3.0.2, which can be exploited via the path parameter.
CVE-2021-46203 has a severity level of medium, with a CVSS score of 6.5.
This vulnerability allows an attacker to read arbitrary files on the system by exploiting the path parameter in Taocms v3.0.2.
At the moment, there is no specific fix available for CVE-2021-46203. It is recommended to update to a newer version or apply any patches released by the vendor.
You can find more information about CVE-2021-46203 on the GitHub issue: https://github.com/taogogo/taocms/issues/13