peter bassill · operator
$ cve CVE-2018-12596 JSON

CVE-2018-12596 EXPLOIT

9.8
CRITICAL · CVSS 3.0 · EPSS 22.4% (pctl 98)

Patch early

A public exploit exists.

Description

Episerver Ektron CMS before 9.0 SP3 Site CU 31, 9.1 before SP3 Site CU 45, or 9.2 before SP2 Site CU 22 allows remote attackers to call aspx pages via the "activateuser.aspx" page, even if a page is located under the /WorkArea/ path, which is forbidden (normally available exclusively for local admins).

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS22.38% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-269
On CISA KEVno
Public exploityes
Published2018-10-10
Last modified2026-06-17

Affected (1)

VendorProduct
episerverektron cms

Public exploits

SourceTitleDate
exploit-dbEktron CMS 9.20 SP2 - Improper Access Restrictions2018-10-10

References

→ the Explorer  ·  watch your stack  ·  NVD