Critical severity9.8NVD Advisory· Published Jul 3, 2018· Updated Jun 17, 2026
CVE-2018-13123
CVE-2018-13123
Description
onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to read arbitrary files via the i and f parameters, as demonstrated by ?i=etc/&f=passwd&p=raw_view for the /etc/passwd file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=2017-10-08
- Range: <= 2017-10-08
Patches
Vulnerability mechanics
References
1- github.com/Self-Evident/OneFileCMS/issues/50nvdThird Party Advisory
News mentions
0No linked articles in our index yet.