CVE-2018-16979
18Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 3.0%
probabilidad de explotación
3.0%top 14% de las CVE
explotación observada
noninguna fuente lo reporta
Monstra CMS V3.0.4 allows HTTP header injection in the plugins/captcha/crypt/cryptographp.php cfg parameter, a related issue to CVE-2012-2943.
Productos afectados
n/a · n/aReferencias
https://github.com/howchen/howchen/issues/4