First published: Thu Feb 22 2024(Updated: )
cmseasy V7.7.7.9 has an arbitrary file deletion vulnerability in lib/admin/template_admin.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CmsEasy |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25828 is classified as a high severity vulnerability due to its potential for unauthorized file deletion.
To fix CVE-2024-25828, update to the latest version of CmsEasy that addresses this arbitrary file deletion vulnerability.
CVE-2024-25828 affects CmsEasy version 7.7.7.9.
CVE-2024-25828 is an arbitrary file deletion vulnerability present in the lib/admin/template_admin.php file.
Yes, exploitation of CVE-2024-25828 could allow an attacker to delete critical files, potentially leading to further attacks on the system.