A vulnerability classified as critical has been found in...
Moderate severity
Unreviewed
Published
Dec 23, 2024
to the GitHub Advisory Database
•
Updated Jul 15, 2025
Description
Published by the National Vulnerability Database
Dec 23, 2024
Published to the GitHub Advisory Database
Dec 23, 2024
Last updated
Jul 15, 2025
A vulnerability classified as critical has been found in FoxCMS up to 1.2. Affected is an unknown function of the file /install/installdb.php of the component Configuration File Handler. The manipulation of the argument database password leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
References