Lucene search

K
cvelistMitreCVELIST:CVE-2018-16608
HistorySep 10, 2018 - 1:00 p.m.

CVE-2018-16608

2018-09-1013:00:00
mitre
www.cve.org
3

AI Score

8.9

Confidence

High

EPSS

0.001

Percentile

41.9%

In Monstra CMS 3.0.4, an attacker with ‘Editor’ privileges can change the password of the administrator via an admin/index.php?id=users&action=edit&user_id=1, Insecure Direct Object Reference (IDOR).

AI Score

8.9

Confidence

High

EPSS

0.001

Percentile

41.9%

Related for CVELIST:CVE-2018-16608