High severity8.8NVD Advisory· Published Oct 30, 2018· Updated Jun 17, 2026
CVE-2018-18842
CVE-2018-18842
Description
CSRF exists in zb_users/plugin/AppCentre/theme.js.php in Z-BlogPHP 1.5.2.1935 (Zero), which allows remote attackers to execute arbitrary PHP code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/zblogcn/zblogphp/issues/201nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.