Vulnerabilities (CVE)

Filtered by vendor Laravelcms Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-18888 1 Laravelcms Project 1 Laravelcms 2023-12-10 7.5 HIGH 9.8 CRITICAL
An issue was discovered in laravelCMS through 2018-04-02. \app\Http\Controllers\Backend\ProfileController.php allows upload of arbitrary PHP files because the file extension is not properly checked and uploaded files are not properly renamed.