Access Control Vulnerability in PbootCMS by PbootCMS Team
CVE-2020-22535
6.5MEDIUM
What is CVE-2020-22535?
An incorrect access control vulnerability exists within PbootCMS version 2.0.6. This security flaw arises through the list parameter in the update function found in upgradecontroller.php, potentially allowing unauthorized access to sensitive functionalities of the content management system. Proper security measures must be implemented to mitigate the risks associated with this vulnerability.
