Security Advisory

CVE-2018-17984

7.8
HIGH

Vulnerability Description

An unanchored /[a-z]{2}/ regular expression in ISPConfig before 3.1.13 makes it possible to include arbitrary files, leading to code execution. This is exploitable by authenticated users who have local filesystem access.
Published Date October 4, 2018
Official Source NIST NVD Advisory