CVE-2020-22474

MEDIUM

webERP 4.15 - Local File Inclusion

Title source: llm
STIX 2.1

Description

In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter, which can lead to local file inclusion.

Scores

CVSS v3 6.5
EPSS 0.0028
EPSS Percentile 51.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-829
Status published
Products (1)
weberp/weberp 4.15
Published Feb 22, 2021
Tracked Since Feb 18, 2026