Vulnerabilities (CVE)

Filtered by CWE-185
Total 21 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17984 1 Ispconfig 1 Ispconfig 2018-12-13 4.6 MEDIUM 7.8 HIGH
An unanchored /[a-z]{2}/ regular expression in ISPConfig before 3.1.13 makes it possible to include arbitrary files, leading to code execution. This is exploitable by authenticated users who have local filesystem access.