PT-2018-13907 · Cscms · Cscms

Published

2018-09-17

·

Updated

2018-11-19

·

CVE-2018-17126

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CScms version 4.1
Description The issue allows remote code execution. This can be demonstrated by using the input 1');eval($ POST[cmd]);# in the Web Name field to upload a file to pluginssysInstall.php.
Recommendations For CScms version 4.1, as a temporary workaround, consider restricting access to the Install.php file in the pluginssys directory until a patch is available. Avoid using user-inputted data in the eval() function to minimize the risk of exploitation.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-17126

Affected Products

Cscms