CVE-2018-14729: Input Validation
Published May 22, 2019
·Updated
The database backup feature in upload/source/admincp/admincpdb.php in Discuz! 2.5 and 3.4 allows remote attackers to execute arbitrary PHP code.
Affected Software
2 affected components
Comsenz Discuz\!>=1.5<=2.5
Comsenz Discuz\!>=3.0<=3.4
Event History
May 22, 2019
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-14729?
CVE-2018-14729 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2018-14729?
To fix CVE-2018-14729, upgrade to a patched version of Discuz! that addresses this vulnerability.
3
Which versions of Discuz! are affected by CVE-2018-14729?
CVE-2018-14729 affects Discuz! versions 2.5 and 3.4.
4
What are the potential impacts of CVE-2018-14729?
The potential impacts of CVE-2018-14729 include unauthorized remote code execution and compromise of the server.
5
Who can exploit CVE-2018-14729?
Remote attackers can exploit CVE-2018-14729 to execute arbitrary PHP code on vulnerable systems.