CVE-2018-20608: Txjia Imcat

High severity, CVSS 7.5. EPSS: 12.1% chance of exploitation in the next 30 days.

imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI.

Affected products

  • Txjia Imcat: version 4.4 only

Published 2018-12-30. Last modified 2026-06-17.