CVE-2018-17936
23Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 15%
from disclosure to weapon0 days
Published on NVDNov 27
metasploitOct 11
exploitation probability
15%top 3% of all CVEs
observed exploitation
nono source reports it
NUUO CMS All versions 3.3 and prior the application allows the upload of arbitrary files that can modify or overwrite configuration files to the server, which could allow remote code execution.
Affected products
n/a · NUUO CMS