CVE-2018-16553
Published Jun 20, 2019
·Updated
In Jspxcms 9.0.0, a vulnerable URL routing implementation allows remote code execution after logging in as web admin.
Affected Software
1 affected component
Jspxcms Jspxcms=9.0.0
Event History
Jun 20, 2019
CVE Published
via MITRE·01:11 PM
Data Sourced
via MITRE·01:11 PM
Description
Frequently Asked Questions
1
What is CVE-2018-16553?
CVE-2018-16553 is a vulnerability in Jspxcms 9.0.0 that allows remote code execution after logging in as web admin.
2
What is the severity of CVE-2018-16553?
CVE-2018-16553 has a severity rating of 7.2 (high).
3
How does CVE-2018-16553 work?
CVE-2018-16553 exploits a vulnerable URL routing implementation in Jspxcms 9.0.0 to execute remote code after logging in as web admin.
4
What software versions are affected by CVE-2018-16553?
Jspxcms 9.0.0 is the only affected version by CVE-2018-16553.
5
How can I fix CVE-2018-16553?
To fix CVE-2018-16553, it is recommended to update to a patched version of Jspxcms.