High severity7.2NVD Advisory· Published Nov 22, 2018· Updated Jun 17, 2026
CVE-2018-19457
CVE-2018-19457
Description
Logicspice FAQ Script 2.9.7 allows uploading arbitrary files, which leads to remote command execution via admin/faqs/faqimages with a .php file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:logicspice:faq_script:2.9.7:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:logicspice:faq_script:2.9.7:*:*:*:*:*:*:*
- (no CPE)range: 2.9.7
Patches
Vulnerability mechanics
References
2- pentest.com.tr/exploits/Logicspice-FAQ-Script-2-9-7-Remote-Code-Execution.htmlnvdExploitThird Party Advisory
- www.exploit-db.com/exploits/45326/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.