CVE-2018-18942
CVE-2018-18942
In baserCMS before 4.1.4, lib\Baser\Model\ThemeConfig.php allows remote attackers to execute arbitrary PHP code via the admin/theme_configs/form data[ThemeConfig][logo] parameter.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →