Vulnerabilities > CVE-2019-12204 - Unspecified vulnerability in Silverstripe
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
In SilverStripe through 4.3.3, a missing warning about leaving install.php in a public webroot can lead to unauthenticated admin access.
Vulnerable Configurations
References
- https://forum.silverstripe.org/c/releases
- https://forum.silverstripe.org/c/releases
- https://www.silverstripe.org/download/security-releases/
- https://www.silverstripe.org/download/security-releases/
- https://www.silverstripe.org/download/security-releases/CVE-2019-12204
- https://www.silverstripe.org/download/security-releases/CVE-2019-12204