Lucene search

K
osvGoogleOSV:CVE-2018-20062
HistoryDec 11, 2018 - 6:29 p.m.

CVE-2018-20062

2018-12-1118:29:00
Google
osv.dev
7

7.8 High

AI Score

Confidence

Low

0.967 High

EPSS

Percentile

99.7%

An issue was discovered in NoneCms V1.3. thinkphp/library/think/App.php allows remote attackers to execute arbitrary PHP code via crafted use of the filter parameter, as demonstrated by the s=index/\think\Request/input&filter=phpinfo&data=1 query string.

CPENameOperatorVersion
nonecmseq1.3.0
nonecmseq1.2.0
nonecmseq1.1.0

7.8 High

AI Score

Confidence

Low

0.967 High

EPSS

Percentile

99.7%