An issue was discovered in DuomiCMS 3.0. Remote PHP code execution is possible via the search.php searchword parameter because "eval" is used during "if" processing.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-10-09T18:00:00
Updated: 2024-08-05T11:01:14.905Z
Reserved: 2018-10-09T00:00:00
Link: CVE-2018-18083
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-10-09T18:29:00.427
Modified: 2018-11-29T14:34:41.320
Link: CVE-2018-18083
Redhat
No data.