CVE-2018-14831

Publication date

2019-07-10 14:29:53

Family

mitre

State

PUBLISHED

Description

An arbitrary file read vulnerability in DamiCMS v6.0.0 allows remote authenticated administrators to read any files in the server via a crafted /admin.php?s=Tpl/Add/id/ URI.