CVEs Blog | G5 Cyber Security

CVE-2020-19147 – Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote at

Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive infromation via the ‘getFolder()’ function in the component ‘/modules/filemanager/FileManager.java’.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-19147

Reference (s):

Exit mobile version