Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Fkzhangsao

#43262of 56,337
6.5Total CVSS
Vulnerabilities · 1
PT-2021-10768
6.5
2021-07-09
Pbootcms · Pbootcms · CVE-2020-22535
**Name of the Vulnerable Software and Affected Versions** PbootCMS version 2.0.6 **Description** The issue is related to an Incorrect Access Control vulnerability. It can be exploited via the `list` parameter in the `update` function in `upgradecontroller.php`. **Recommendations** For PbootCMS version 2.0.6, consider restricting access to the `update` function in `upgradecontroller.php` to minimize the risk of exploitation. Avoid using the `list` parameter in the affected function until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.