CVE-2012-2438: Awcm-CMS Ar Web Content Manager

Medium severity, CVSS 5.0. EPSS: 1.6% chance of exploitation in the next 30 days.

ar web content manager (AWCM) 2.2 does not restrict the number of comment records that can be submitted through HTTP requests, which allows remote attackers to cause a denial of service (disk consumption) via the coment parameter to (1) show_video.php or (2) topic.php.

Affected products

  • Awcm-CMS Ar Web Content Manager: version 2.2 only

Published 2012-11-26. Last modified 2026-06-16.