ZeroHour

CVE-2018-17837

PoC
CVSS 3.0
7.5 high
EPSS
1%p68
Published
()
Modified
Description

An issue was discovered in JTBC(PHP) 3.0.1.6. Arbitrary file deletion is possible via a /console/file/manage.php?type=action&action=delete&path=c%3A%2F substring.

Vendors
jtbc
Products
jtbc php
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.