SUCMS Directory Traversal and Arbitrary File Deletion Vulnerability

Vulnerability

A vulnerability in the admin_template.php component of SUCMS version 1.0 allows attackers to perform directory traversal and delete arbitrary files. This is achieved by sending a crafted GET request that exploits the vulnerability.

Impact

Exploitation of this vulnerability allows for arbitrary file deletion on the server, which could lead to loss of important data or disruption of service.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.7
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.