5
CVSSv2

CVE-2018-6881

Published: 12/02/2018 Updated: 19/02/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

EmpireCMS 6.6 allows remote malicious users to discover the full path via an array value for a parameter to admin/tool/ShowPic.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dedecms dedecms 5.7

phome empirecms 6.6

phome empirecms 7.0

phome empirecms 7.2