CVE-2018-18487
18.10.2018, 21:29
In \lib\admin\action\dataaction.class.php in Gxlcms v2.0, the database backup filename generation uses mt_rand() unsafely, resulting in predictable database backup file locations.Enginsight
Vendor | Product | Version |
---|---|---|
gxlcms | gxlcms | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration