CVE-2008-6951

Cms.maury91 Maurycms - Authentication Bypass

Title source: rule

Description

MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.

Scores

EPSS 0.0062
EPSS Percentile 69.6%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

cms.maury91/maurycms

Timeline

Published Aug 12, 2009
Tracked Since Feb 18, 2026