Lucene search

K
cvelistMitreCVELIST:CVE-2018-10517
HistoryApr 27, 2018 - 6:00 p.m.

CVE-2018-10517

2018-04-2718:00:00
mitre
www.cve.org
1

AI Score

7.6

Confidence

High

EPSS

0.174

Percentile

96.2%

In CMS Made Simple (CMSMS) through 2.2.7, the “module import” operation in the admin dashboard contains a remote code execution vulnerability, exploitable by an admin user, because an XML Package can contain base64-encoded PHP code in a data element.

AI Score

7.6

Confidence

High

EPSS

0.174

Percentile

96.2%