File Deletion Vulnerability in GreenCMS by GreenCMS
CVE-2018-19329
4.9MEDIUM
What is CVE-2018-19329?
GreenCMS v2.3.0603 contains a vulnerability that allows remote authenticated administrators to delete arbitrary files by manipulating a base64-encoded pathname in a specific deletion request. This can be achieved via the administrative interface, posing a risk of unauthorized data loss.
