| ID | CVE-2020-5840 | ||||||
| Sažetak | An issue was discovered in HashBrown CMS before 1.3.2. Server/Entity/Resource/Connection.js allows an attacker to reach a parent directory via a crafted name or ID field. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:N/C:P/I:N/A:N | ||||||
| Zadnje važnije ažuriranje | 14-01-2020 - 19:43 | ||||||
| Objavljeno | 06-01-2020 - 18:15 |

