juzaweb CMS
cpe:2.3:a:juzaweb:cms:*:*:*:*:*:*:*
- <= 3.4.2
A critical vulnerability has been identified in juzaweb CMS versions through 3.4.2, specifically within the Error Logs Page component located at /admin-cp/log-viewer. This vulnerability arises from improper access controls, allowing remote exploitation. The issue has been publicly disclosed, and the vendor has not responded to initial notifications.
Exploitation of this vulnerability allows for unauthorized access to the error logs, potentially leading to information disclosure or further exploitation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.