← Back to CVE List

CVE-2022-37191

Published: 2022-09-13T23:15Z
Last Modified: 2024-11-21T07:14Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The component "cuppa/api/index.php" of CuppaCMS v1.0 is Vulnerable to LFI. An authenticated user can read system files via crafted POST request using [function] parameter value as LFI payload. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt