Vulnerabilities > Yunucms > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-11-11 | CVE-2018-19181 | Path Traversal vulnerability in Yunucms 1.1.5 statics/ueditor/php/vendor/Local.class.php in YUNUCMS 1.1.5 allows arbitrary file deletion via the statics/ueditor/php/controller.php?action=remove key parameter, as demonstrated by using directory traversal to delete the install.lock file. | 7.5 |