CVE-2018-16820
EUVD-2018-861818.09.2018, 21:29
admin/index.php in Monstra CMS 3.0.4 allows arbitrary directory listing via id=filesmanager&path=uploads/.......//./.......//./ requests.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| monstra | monstra | 3.0.4 |
𝑥
= Vulnerable software versions