Description
NUUO CMS All versions 3.3 and prior the application allows external input to construct a pathname that is able to be resolved outside the intended directory. This could allow an attacker to impersonate a legitimate user, obtain restricted information, or execute arbitrary code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://ics-cert.us-cert.gov/advisories/ICSA-18-284-02 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-05T11:01:14.683Z
Reserved: 2018-10-02T00:00:00.000Z
Link: CVE-2018-17934
No data.
Status : Modified
Published: 2018-11-27T20:29:00.860
Modified: 2024-11-21T03:55:14.387
Link: CVE-2018-17934
No data.
OpenCVE Enrichment
No data.
Weaknesses