CVE-2018-18965: Medium severity oscommerce php point of sale vulnerability
osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in catalog/images/ bans the html extension, but there are several alternative cases in which HTML can be executed, such as a file with no extension or an unrecognized extension (e.g., the test or test.asdf filename).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-18965.
What is the severity level of CVE-2018-18965?
The severity level of CVE-2018-18965 is medium, with a severity value of 4.9.
What is the affected software for CVE-2018-18965?
The affected software for CVE-2018-18965 is osCommerce 2.3.4.1.
How can this vulnerability be exploited?
This vulnerability can be exploited by executing HTML code in files with no extension or unrecognized extensions.
Is there a fix for CVE-2018-18965?
At the moment, there is no official fix available for CVE-2018-18965. It is recommended to stay updated with the latest patches and security practices.