Lucene search

K
osvGoogleOSV:CVE-2018-18966
HistoryNov 06, 2018 - 4:29 a.m.

CVE-2018-18966

2018-11-0604:29:00
Google
osv.dev
10

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

22.5%

osCommerce 2.3.4.1 has an incomplete ‘.htaccess’ for blacklist filtering in the “product” page. The .htaccess file in catalog/images/ bans the html extension, but Internet Explorer render HTML elements in a .eml file.

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

22.5%

Related for OSV:CVE-2018-18966