Connect-CMS Privilege Escalation Vulnerability
Moderate severity
GitHub Reviewed
Published
Jul 3, 2023
in
opensource-workshop/connect-cms
•
Updated Feb 7, 2025
Package
Affected versions
< 1.7.2
>= 2.0.0, < 2.3.2
Patched versions
1.7.2
2.3.2
Description
Published to the GitHub Advisory Database
Jul 5, 2023
Reviewed
Jul 5, 2023
Last updated
Feb 7, 2025
Impact(影響)
There is a Privilege Escalation Vulnerability on the management system of Connect-CMS.
Affercted Version : Connect-CMS 1.7.1, 2.3.1 and earlier
Patches(修正バージョン)
version 1.7.2, 2.3.1
Workarounds(運用回避手段)
Upgrade Connect-CMS to latest version
References