CmsEasy v7.7.7.9 was discovered to contain a local file inclusion vunerability via the file_get_contents function in the fckedit_action method of /admin/template_admin.php. This vulnerability allows attackers to read arbitrary files.
History

Mon, 14 Apr 2025 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Cmseasy
Cmseasy cmseasy
CPEs cpe:2.3:a:cmseasy:cmseasy:7.7.7.9:*:*:*:*:*:*:*
Vendors & Products Cmseasy
Cmseasy cmseasy

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-02T02:51:10.999Z

Reserved: 2024-05-02T00:00:00

Link: CVE-2024-34315

cve-icon Vulnrichment

Updated: 2024-08-02T02:51:10.999Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-07T19:15:08.447

Modified: 2025-04-14T14:21:13.200

Link: CVE-2024-34315

cve-icon Redhat

No data.