Record summary

CVE-2017-15639 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.

Description

tasks/feed/readRSS.cfm in Mura CMS before 6.2 allows attackers to bypass intended access restrictions by leveraging the "draggable feeds" feature.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMura CMS < 6.2 - Server-Side Request Forgery / XML External Entity InjectionExploitDB exploitby Anthony ColeNot analyzed1 file
ExploitDB

PoC details

References

4