Access Control Flaw in Contao Products by Contao Association
CVE-2018-20028
6.5MEDIUM
What is CVE-2018-20028?
Contao versions 3.x prior to 3.5.37, 4.4.x prior to 4.4.31, and 4.6.x prior to 4.6.11 are susceptible to an incorrect access control vulnerability. This flaw could potentially allow unauthorized users to access restricted areas or functions within the affected Contao installations. It is crucial for users and administrators to update their systems promptly to mitigate any associated risks.
