CVE-2018-14596: Wancms

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

wancms 1.0 through 5.0 allows remote attackers to cause a denial of service (resource consumption) via a checkcode (aka verification code) URI in which the values of font_size, width, and height are large numbers.

Affected products

  • Wancms Wancms: from 1.0, up to and including 5.0

Published 2018-07-25. Last modified 2026-06-17.