phpVMS < 7.0.6 - Legacy Importer Authorization Bypass
phpVMS < 7.0.6 contains an authentication bypass caused by unauthenticated access to a legacy import feature, letting unauthenticated attackers access restricted functionality, exploit requires no special privileges.
PoC 已收录phpVMS
CVSS—EPSS 1.3%