CVE-2019-11626

Severity CVSS v4.0:
Pending analysis
Type:
CWE-21 Path Equivalence
Publication date:
30/04/2019
Last modified:
01/05/2019

Description

routers/ajaxRouter.php in doorGets 7.0 has a web site physical path leakage vulnerability, as demonstrated by an ajax/index.php?uri=1234%5c request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:doorgets:doorgets_cms:7.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools