CVE-2018-1000811: Bludit

High severity, CVSS 8.8. EPSS: 47.6% chance of exploitation in the next 30 days.

bludit version 3.0.0 contains a Unrestricted Upload of File with Dangerous Type vulnerability in Content Upload in Pages Editor that can result in Remote Command Execution. This attack appear to be exploitable via malicious user have to upload a crafted payload containing PHP code.

Affected products

  • Bludit Bludit: version 3.0.0 only

Published 2018-12-20. Last modified 2026-06-17.