An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting theĀ option parameter equal to 0, 1 or 2 in /administer/selectionnode/framesSelection.asp.
2025-06-10T10:15:28.237
2025-10-22T13:56:16.287
Analyzed
CVSSv3.1: 7.5 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | acc | dm_corporative_cms | < 2025.01 | Yes |