CVE

CVE-2018-16774

CVE-2018-16774

HongCMS 3.0.0 allows arbitrary file deletion via a ../ in the file parameter to admin/index.php/language/ajax?action=delete.

Source: CVE-2018-16774

Exit mobile version