CVE-2018-19499

Publication date

2018-11-23 19:00:00

Family

mitre

State

PUBLISHED

Description

Vanilla before 2.5.5 and 2.6.x before 2.6.2 allows Remote Code Execution because authenticated administrators have a reachable call to unserialize in the Gdn_Format class.