Security Advisory

CVE-2018-19457

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-22 20:00:00
Last updated 2024-09-17 02:31:35
Assigner mitre
State PUBLISHED

Description

Logicspice FAQ Script 2.9.7 allows uploading arbitrary files, which leads to remote command execution via admin/faqs/faqimages with a .php file.