Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The vulnerability has been fixed by the Dmacroweb team in version 2025.01.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-17647 | Absolute path disclosure vulnerability in DM Corporative CMS. This vulnerability allows an attacker to view the contents of webroot/file, if navigating to a non-existent file. |
Wed, 22 Oct 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acc
Acc dm Corporative Cms |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:acc:dm_corporative_cms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Acc
Acc dm Corporative Cms |
|
| Metrics |
cvssV3_1
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 10 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Jun 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Absolute path disclosure vulnerability in DM Corporative CMS. This vulnerability allows an attacker to view the contents of webroot/file, if navigating to a non-existent file. | |
| Title | Absolute path disclosure vulnerability in DM Corporative CMS | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-06-10T14:30:35.767Z
Reserved: 2025-04-16T08:38:13.919Z
Link: CVE-2025-40662
Updated: 2025-06-10T14:30:31.262Z
Status : Analyzed
Published: 2025-06-10T10:15:29.103
Modified: 2025-10-22T13:33:48.703
Link: CVE-2025-40662
No data.
OpenCVE Enrichment
No data.
EUVD