CVE-2018-19512

Publication date

2019-03-17 21:58:48

Family

mitre

State

PUBLISHED

Description

In Webgalamb through 7.0, a system/ajax.php "wgmfile restore" directory traversal vulnerability could lead to arbitrary code execution by authenticated administrator users, because PHP files are restored under the document root directory.