CVE-2025-40661

Publication date

2025-06-10 10:06:40

Family

INCIBE

State

PUBLISHED

Description

An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theĀ option parameter equal to 0, 1 or 2 in /administer/selectionnode/selection.asp.