Unrated severityNVD Advisory· Published Nov 12, 2018· Updated Sep 17, 2024
CVE-2018-19228
CVE-2018-19228
Description
An issue was discovered in LAOBANCMS 2.0. It allows arbitrary file deletion via ../ directory traversal in the admin/pic.php del parameter, as demonstrated by deleting install/install.txt to permit a reinstallation.
Affected products
2= 2.0+ 1 more
- (no CPE)range: = 2.0
- (no CPE)range: = 2.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/AvaterXXX/laobanCMS/blob/master/1.mdmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.