CVE-2018-13122
03.07.2018, 22:29
onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to delete arbitrary files via the Delete File(s) screen, as demonstrated by a ?i=var/www/html/&f=123.php&p=edit&p=deletefile URI.Enginsight
Vendor | Product | Version |
---|---|---|
onefilecms | onefilecms | 𝑥 ≤ 3.6.13 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration