RULE(RULE ID:335382)

Rule General Information
Release Date: 2024-04-28
Rule Name: EmpireCMS v7.5 Arbitrary File Upload Vulnerability (CVE-2018-18086)
Severity:
CVE ID:
Rule Protection Details
Description: EmpireCMS v7.5 has an arbitrary file upload vulnerability in the LoadInMod function in e/class/moddofun.php, exploitable by logged-in users.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://github.com/SukaraLin/php_code_audit_project/issues/1
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
http://www.phome.net/