Security Advisory

CVE-2018-12491

9.8
CRITICAL

Vulnerability Description

PHPOK 4.9.032 has an arbitrary file upload vulnerability in the import_f function in framework/admin/modulec_control.php, as demonstrated by uploading a .php file within a .php.zip archive, a similar issue to CVE-2018-8944.
Published Date June 15, 2018
Official Source NIST NVD Advisory