Medium severity6.1NVD Advisory· Published Oct 24, 2018· Updated Jun 17, 2026
CVE-2018-18548
CVE-2018-18548
Description
ajenticp (aka Ajenti Docker control panel) for Ajenti through v1.2.23.13 has XSS via a filename that is mishandled in File Manager.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
ajentiPyPI | <= 1.2.23.13 | — |
Affected products
2Patches
Vulnerability mechanics
References
7- packetstormsecurity.com/files/149898/AjentiCP-1.2.23.13-Cross-Site-Scripting.htmlnvdThird Party AdvisoryVDB EntryWEB
- github.com/advisories/GHSA-5pcv-m8w2-62m9ghsaADVISORY
- numanozdemir.com/ajenti-xss.txtnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2018-18548ghsaADVISORY
- www.exploit-db.com/exploits/45691/nvdThird Party AdvisoryVDB Entry
- github.com/pypa/advisory-database/tree/main/vulns/ajenti/PYSEC-2018-107.yamlghsaWEB
- www.exploit-db.com/exploits/45691ghsaWEB
News mentions
0No linked articles in our index yet.