High severity7.5NVD Advisory· Published Oct 1, 2018· Updated Jun 17, 2026
CVE-2018-17837
CVE-2018-17837
Description
An issue was discovered in JTBC(PHP) 3.0.1.6. Arbitrary file deletion is possible via a /console/file/manage.php?type=action&action=delete&path=c%3A%2F substring.
Affected products
2Patches
Vulnerability mechanics
References
1- github.com/AvaterXXX/JTBC/blob/master/README.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.