First published: Thu Nov 30 2023(Updated: )
A vulnerability classified as problematic has been found in Thecosy IceCMS 2.0.1. Affected is an unknown function of the file /WebArticle/articles/ of the component Like Handler. The manipulation leads to improper enforcement of a single, unique action. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-246438 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
iCMS | =2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-6438 is medium with a severity value of 5.3.
CVE-2023-6438 is a vulnerability in Thecosy IceCMS 2.0.1 that allows for improper enforcement of a single, unique action.
CVE-2023-6438 allows for remote attackers to launch the attack against Thecosy IceCMS 2.0.1.
The affected software for CVE-2023-6438 is Thecosy IceCMS version 2.0.1.
To mitigate CVE-2023-6438, it is recommended to update Thecosy IceCMS to a version that addresses the vulnerability.