DDSN Interactive Acora CMS
cpe:2.3:a:ddsn:cm3_acora_content_management_system:*:*:*:*:*:*:*
- 10.7.1
A vulnerability exists in DDSN Interactive Acora CMS version 10.7.1, specifically within the file_details.asp endpoint. This issue arises from incorrect access control, which allows attackers with editor privileges to access sensitive files by sending crafted requests. The vulnerability exploits a flaw in how the CMS manages permissions for file access, potentially leading to unauthorized exposure of confidential information.
Exploitation of this vulnerability could result in unauthorized access to sensitive files, potentially leading to the disclosure of confidential information or other related risks, depending on the nature of the accessed files.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.