CVE-2018-16288: LG Supersign CMS

High severity, CVSS 8.6. EPSS: 35.8% chance of exploitation in the next 30 days.

LG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.

Affected products

  • LG Supersign CMS: version 2.5 only

Published 2018-09-14. Last modified 2026-06-17.