3.5
CVSSv2

CVE-2012-6064

Published: 03/12/2012 Updated: 29/08/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in lib/filemanager/imagemanager/images.php in CMS Made Simple (CMSMS) prior to 1.11.2.1 allows remote authenticated administrators to delete arbitrary files via a .. (dot dot) in the deld parameter. NOTE: this can be leveraged using CSRF (CVE-2012-5450) to allow remote malicious users to delete arbitrary files.

Vulnerable Product Search on Vulmon Subscribe to Product

cmsmadesimple cms made simple 1.9.4

cmsmadesimple cms made simple 1.9.4.1

cmsmadesimple cms made simple 1.9

cmsmadesimple cms made simple 1.1.3.1

cmsmadesimple cms made simple 1.7

cmsmadesimple cms made simple 1.6

cmsmadesimple cms made simple 1.6.1

cmsmadesimple cms made simple 1.3

cmsmadesimple cms made simple 1.4

cmsmadesimple cms made simple 1.0.1

cmsmadesimple cms made simple 1.4.1

cmsmadesimple cms made simple 1.2

cmsmadesimple cms made simple 0.6.1

cmsmadesimple cms made simple 0.7

cmsmadesimple cms made simple 0.4

cmsmadesimple cms made simple 0.3.2

cmsmadesimple cms made simple 0.8.1

cmsmadesimple cms made simple 0.8.2

cmsmadesimple cms made simple 0.12

cmsmadesimple cms made simple 0.11.2

cmsmadesimple cms made simple

cmsmadesimple cms made simple 1.9.2

cmsmadesimple cms made simple 1.1.3

cmsmadesimple cms made simple 1.1.4

cmsmadesimple cms made simple 1.6.4

cmsmadesimple cms made simple 1.6.5

cmsmadesimple cms made simple 1.5.1

cmsmadesimple cms made simple 1.5.2

cmsmadesimple cms made simple 1.2.1

cmsmadesimple cms made simple 1.1.1

cmsmadesimple cms made simple 1.0.5

cmsmadesimple cms made simple 1.2.2

cmsmadesimple cms made simple 0.1

cmsmadesimple cms made simple 0.6

cmsmadesimple cms made simple 0.7.1

cmsmadesimple cms made simple 0.2.1

cmsmadesimple cms made simple 0.2

cmsmadesimple cms made simple 0.10.2

cmsmadesimple cms made simple 0.13

cmsmadesimple cms made simple 0.9.2

cmsmadesimple cms made simple 0.10.1

cmsmadesimple cms made simple 0.10.3

cmsmadesimple cms made simple 0.10

cmsmadesimple cms made simple 1.9.4.2

cmsmadesimple cms made simple 1.9.1

cmsmadesimple cms made simple 1.6.7

cmsmadesimple cms made simple 1.6.3

cmsmadesimple cms made simple 1.6.2

cmsmadesimple cms made simple 1.5

cmsmadesimple cms made simple 1.2.4

cmsmadesimple cms made simple 1.2.3

cmsmadesimple cms made simple 1.7.1

cmsmadesimple cms made simple 1.8.1

cmsmadesimple cms made simple 1.0

cmsmadesimple cms made simple 1.1

cmsmadesimple cms made simple 0.6.3

cmsmadesimple cms made simple 0.7.2

cmsmadesimple cms made simple 0.5

cmsmadesimple cms made simple 0.4.1

cmsmadesimple cms made simple 0.9

cmsmadesimple cms made simple 0.9.1

cmsmadesimple cms made simple 0.11.1

cmsmadesimple cms made simple 0.10.4

cmsmadesimple cms made simple 0.11

cmsmadesimple cms made simple 1.1.2

cmsmadesimple cms made simple 1.9.3

cmsmadesimple cms made simple 1.8

cmsmadesimple cms made simple 1.8.2

cmsmadesimple cms made simple 1.6.6

cmsmadesimple cms made simple 1.5.4

cmsmadesimple cms made simple 1.5.3

cmsmadesimple cms made simple 1.2.5

cmsmadesimple cms made simple 1.0.6

cmsmadesimple cms made simple 1.0.4

cmsmadesimple cms made simple 1.0.3

cmsmadesimple cms made simple 1.0.2

cmsmadesimple cms made simple 0.5.1

cmsmadesimple cms made simple 0.6.2

cmsmadesimple cms made simple 0.3.1

cmsmadesimple cms made simple 0.3

cmsmadesimple cms made simple 0.7.3

cmsmadesimple cms made simple 0.8

cmsmadesimple cms made simple 0.12.2

cmsmadesimple cms made simple 0.12.1