Description
In SilverStripe through 4.3.3, a missing warning about leaving install.php in a public webroot can lead to unauthenticated admin access.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0743 | In SilverStripe through 4.3.3, a missing warning about leaving install.php in a public webroot can lead to unauthenticated admin access. |
Github GHSA |
GHSA-cg8j-8w52-735v | Missing warning can lead to unauthenticated admin access in SilverStripe |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:17:38.108Z
Reserved: 2019-05-20T00:00:00.000Z
Link: CVE-2019-12204
No data.
Status : Modified
Published: 2019-09-25T19:15:10.267
Modified: 2024-11-21T04:22:24.810
Link: CVE-2019-12204
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA