Insecure Direct Object Reference in DM Corporative CMS by DMACROWEB
CVE-2025-40661
6.9MEDIUM
What is CVE-2025-40661?
An Insecure Direct Object Reference (IDOR) vulnerability has been identified in DM Corporative CMS, potentially allowing unauthorized users to access private areas of the application. By manipulating the 'option' parameter in the URL, an attacker can gain access to sensitive information, which may compromise user privacy and escalate security risks. It is crucial for users of this CMS to implement necessary security measures to protect against such exploits.
Affected Version(s)
DM Corporative CMS 0 < 2025.01