CVE-2018-18793: Malicious File Upload
Published Nov 16, 2018
·Updated
School Event Management System 1.0 allows Arbitrary File Upload via event/controller.php?action=photos.
Affected Software
1 affected component
School Event Management System Project School Event Management System=1.0
Event History
Nov 16, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18793?
CVE-2018-18793 has been classified as a medium severity vulnerability due to its potential for arbitrary file upload.
2
How do I fix CVE-2018-18793?
To fix CVE-2018-18793, ensure that file upload functionality is secured by implementing strict validation and sanitization of uploaded files.
3
What are the risks associated with CVE-2018-18793?
The risks associated with CVE-2018-18793 include the potential for attackers to upload malicious files, which could lead to unauthorized access or server compromise.
4
Which software versions are affected by CVE-2018-18793?
CVE-2018-18793 affects version 1.0 of the School Event Management System.
5
Can CVE-2018-18793 be exploited remotely?
Yes, CVE-2018-18793 can be exploited remotely if the affected software is accessible over the internet.