Skip to main content
Loading…
    CVE-2018-25308 — BuddyPress Xprofile Custom Fields Type 2.6.3 contains a remote code execution vulnerability that allows authenticated users to delete arbitrary files by manipulating unescaped POST parameters. Attacke — CVE Database · The Intelligence Room