Security Advisory
CVE-2018-12994
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
onefilecms.php in OneFileCMS through 2012-04-14 might allow attackers to execute arbitrary PHP code via a .php filename on the New File screen.