CVE-2018-17888
23Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 30%
de la publicación al arma0 días
Publicada en NVD12 oct
metasploit11 oct
probabilidad de explotación
30%top 2% de las CVE
explotación observada
noninguna fuente lo reporta
NUUO CMS all versions 3.1 and prior, The application uses a session identification mechanism that could allow attackers to obtain the active session ID, which could allow arbitrary remote code execution.
Productos afectados
NUUO · NUUO CMS