CVE-2014-8702: Wondercms
Medium severity, CVSS 5.3. EPSS: 1.4% chance of exploitation in the next 30 days.
Wonder CMS 2014 allows remote attackers to obtain sensitive information by logging into the application with an array for the password, which reveals the installation path in an error message.
Affected products
- Wondercms Wondercms: version 2014 only
Published 2017-03-17. Last modified 2026-06-17.