Security Advisory
CVE-2018-12065
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A Local File Inclusion vulnerability in /system/WCore/WHelper.php in Creatiwity wityCMS 0.6.2 allows remote attackers to include local PHP files (execute PHP code) or read non-PHP files by replacing a helper.json file.