CVE-2018-18083

An issue was discovered in DuomiCMS 3.0. Remote PHP code execution is possible via the search.php searchword parameter because "eval" is used during "if" processing.
Configurations

Configuration 1 (hide)

cpe:2.3:a:comsenz:duomicms:3.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-10-09 18:29

Updated : 2024-02-04 20:03


NVD link : CVE-2018-18083

Mitre link : CVE-2018-18083

CVE.ORG link : CVE-2018-18083


JSON object : View

Products Affected

comsenz

  • duomicms
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')