Vulnerabilities > CVE-2012-2438 - Resource Management Errors vulnerability in Awcm-Cms AR web Content Manager 2.2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
awcm-cms
CWE-399

Summary

ar web content manager (AWCM) 2.2 does not restrict the number of comment records that can be submitted through HTTP requests, which allows remote attackers to cause a denial of service (disk consumption) via the coment parameter to (1) show_video.php or (2) topic.php.

Vulnerable Configurations

Part Description Count
Application
Awcm-Cms
1

Common Weakness Enumeration (CWE)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/117975/awcm22-access.txt
idPACKETSTORM:117975
last seen2016-12-05
published2012-11-08
reporterSooel Son
sourcehttps://packetstormsecurity.com/files/117975/AWCM-2.2-Access-Bypass.html
titleAWCM 2.2 Access Bypass