CVE-2008-6951
Cms.maury91 Maurycms - Authentication Bypass
Title source: ruleDescription
MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.
References (4)
Scores
EPSS
0.0062
EPSS Percentile
69.6%
Classification
CWE
CWE-287
Status
draft
Affected Products (1)
cms.maury91/maurycms
Timeline
Published
Aug 12, 2009
Tracked Since
Feb 18, 2026