CVE

CVE-2018-9847

CVE-2018-9847

In Gxlcms QY v1.0.0713, the update function in LibLibActionAdminTplAction.class.php allows remote attackers to execute arbitrary PHP code by placing this code into a template.

Source: CVE-2018-9847

Exit mobile version