CVE-2018-12494: Publiccms

Medium severity, CVSS 6.5. EPSS: 1.7% chance of exploitation in the next 30 days.

An issue was discovered in PublicCMS V4.0.20180210. There is a "Directory Traversal" and "Arbitrary file read" vulnerability via an admin/cmsTemplate/content.html?path=../ URI.

Affected products

  • Publiccms Publiccms: version 4.0.20180210 only

Published 2018-06-15. Last modified 2026-06-17.