CVE-2008-3203 Information
Feb 14, 2021
cve
Description
js/pages/pages_data.php in AuraCMS 2.2 through 2.2.2 does not perform authentication which allows remote attackers to add edit and delete web content via a modified id parameter.
Reference
http://secunia.com/advisories/31000 http://www.auracms.org/ http://www.securityfocus.com/bid/30169 https://exchange.xforce.ibmcloud.com/vulnerabilities/43682 https://www.exploit-db.com/exploits/6033
Share on: