Files
CVEs-PoC/2018/CVE-2018-18942.md
T
2024-06-18 02:51:15 +02:00

640 B

CVE-2018-18942

Description

In baserCMS before 4.1.4, lib\Baser\Model\ThemeConfig.php allows remote attackers to execute arbitrary PHP code via the admin/theme_configs/form data[ThemeConfig][logo] parameter.

POC

Reference

Github

No PoCs found on GitHub currently.