First published: Thu Oct 11 2018(Updated: )
NUUO CMS all versions 3.1 and prior, The application uses insecure and outdated software components for functionality, which could allow arbitrary code execution.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Nuuo Nuuo Cms | <=3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-17890 has a critical severity level as it allows arbitrary code execution due to the use of insecure software components.
To fix CVE-2018-17890, upgrade Nuuo CMS to a version later than 3.1 that addresses this vulnerability.
CVE-2018-17890 affects all versions of Nuuo CMS up to and including version 3.1.
CVE-2018-17890 is classified as a remote code execution vulnerability.
Yes, CVE-2018-17890 can be exploited remotely due to insecure and outdated components within Nuuo CMS.