Unrated severityNVD Advisory· Published Nov 1, 2018· Updated Sep 17, 2024
CVE-2018-18892
CVE-2018-18892
Description
MiniCMS 1.10 allows execution of arbitrary PHP code via the install.php sitename parameter, which affects the site_name field in mc_conf.php.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/AvaterXXX/MiniCms/blob/master/Command%20Execution.mdmitrex_refsource_MISC
- www.patec.cn/newsshow.phpmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.