ZeroHour

CVE-2018-10740

PoC
CVSS 3.0
9.8 critical
EPSS
3%p86
Published
()
Modified
Description

Axublog 1.1.0 allows remote Code Execution as demonstrated by injection of PHP code (contained in the webkeywords parameter) into the cmsconfig.php file.

Vendors
axublog
Products
axublog
Weakness
CWE-94
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.