CyberRota Analysis
AI-GeneratedA vulnerability exists in the Agent Installation Workflow of SiteServer SSCMS 7.4.0, allowing improper access controls due to manipulation of the SecurityKey argument. This could enable remote exploitation, although the attack is complex and difficult to execute. Organizations using this version of SiteServer SSCMS should prioritize addressing this issue to mitigate potential security risks.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was found in SiteServer SSCMS 7.4.0. Affected by this issue is some unknown functionality of the component Agent Installation Workflow. Performing a manipulation of the argument SecurityKey results in improper access controls. Remote exploitation of the attack is possible. The attack is considered to have high complexity. The exploitation is known to be difficult. The project was informed of the problem early through an issue report but has not responded yet.