7.2 High
AI Score
Confidence
Low
0.001 Low
EPSS
Percentile
36.3%
Unrestricted file upload (RCE) in express-cart module before 1.1.7 allows a privileged user to gain access in the hosting machine.
github.com/mrvautin/expressCart/commit/65b18cfe426fa217aa6ada1d4162891883137893
hackerone.com/reports/343726
nvd.nist.gov/vuln/detail/CVE-2018-3758