CVE-2018-0645

CRITICAL

Bit-part Mtappjquery < 1.8.1 - Unrestricted File Upload

Title source: rule
STIX 2.1

Description

MTAppjQuery 1.8.1 and earlier allows remote PHP code execution via unspecified vectors.

References (3)

Core 3
Core References
Vendor Advisory x_refsource_confirm
http://www.tinybeans.net/blog/2015/06/26-230919.html
Third Party Advisory x_refsource_confirm
https://bit-part.net/news/2018/07/mtappjquery-20180717.html
Third Party Advisory third-party-advisory x_refsource_jvn
http://jvn.jp/en/jp/JVN62423700/index.html

Scores

CVSS v3 9.8
EPSS 0.0121
EPSS Percentile 79.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-434
Status published
Products (1)
bit-part/mtappjquery < 1.8.1
Published Sep 07, 2018
Tracked Since Feb 18, 2026