Lucene search

K
cvelistMitreCVELIST:CVE-2018-10082
HistoryApr 13, 2018 - 5:00 a.m.

CVE-2018-10082

2018-04-1305:00:00
mitre
www.cve.org
4
cms made simple
2.2.7
physical path leakage
uri
direct request
security vulnerability

AI Score

5.1

Confidence

High

EPSS

0.002

Percentile

52.0%

CMS Made Simple (CMSMS) through 2.2.7 allows physical path leakage via an invalid /index.php?page= value, a crafted URI starting with /index.php?mact=Search, or a direct request to /admin/header.php, /admin/footer.php, /lib/tasks/class.ClearCache.task.php, or /lib/tasks/class.CmsSecurityCheck.task.php.

AI Score

5.1

Confidence

High

EPSS

0.002

Percentile

52.0%

Related for CVELIST:CVE-2018-10082