Feed/CVE-2018-16763
CVE-2018-16763CRITICALCVSS 9.8

CVE-2018-16763

Published Sep 9, 2018·Updated Jun 16, 2026

NVD Description

FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.

Public Exploits & PoCs22 found

PoC: Fuel-CMS-Remote-Code-Execution-1.4--RCE--

A working PoC to CVE-2018-16763

3

PoC: CVE-2018-16763-

Fuel-Cms Rce Exploit (Single,Mass) Version: 1.4.2

3

PoC: Bash-Script-CVE-2018-16763

FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.

2

PoC: CVE-2018-16763

CVE-2018-16763 but without errors

2

PoC: CVE-2018-16763-exploit

This is an updated version of the CVE-2018-16763 for fuelCMS 1.4.1

2

PoC: exploit_cms_fuel

Python3 exploit for Fuel CMS 1.4.1 Remote Code Execution (CVE-2018-16763) with Reverse Shell.

1

PoC: CVE-2018-16763

CVE-2018-16763 FuelCMS 1.4 Remote Code Execution, this version of FuelCMS is still vulnerable until now

1

PoC: CVE-2018-16763-FuelCMS-1.4.1-RCE

Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.

1

PoC: CVE-2018-16763

Fuel CMS 1.4.1 - Remote Code Execution

1

PoC: CVE-2018-16763_fuel_cms_exploit

A fuel CMS exploit based on Python for RCE mentioned in CVE-2018-16763.

PoC: fuel-cms-cve-2018-16763-python3-port

Maintained Python 3 port of the original FUEL CMS CVE-2018-16763 proof-of-concept.

PoC: CVE-2018-16763

Python tool for analyzing CVE-2018-16763 in FUEL CMS with cleaner response parsing and interactive vulnerability checking.

PoC: CVE-2018-16763-Fuel-CMS-1.4.1-Remote-Code-Execution-PoC

Unauthenticated RCE vulnerability in Fuel CMS 1.4.1.

PoC: CVE-2018-16763

exploit for CVE-2018-16763

PoC: CVE-2018-16763_FuelCMS-1.4.1_RCE

FuelCMS 1.4.1 Command Injection/Remote Code Execution.

PoC: Project-Exploiting-a-Vulnerability-in-Fuel-CMS-CVE-2018-16763-

The goal of this project was to conduct a security audit of a blog recently launched by Ackme Support Incorporated, identifying any critical vulnerabilities before the site goes public. The task involved finding a way to remotely execute code and gain access to the target system.

PoC: CVE-2018-16763-FuelCMS-1.4.1-RCE

Fuel CMS 1.4.1 - Remote Code Execution

PoC: CVE-2018-16763-Proof-of-Concept

A Proof-of-Concept (PoC) exploit for CVE-2018-16763 (Fuel CMS - Preauthenticated Remote Code Execution).

PoC: CVE-2018-16763

Fuel CMS 1.4.1 - Remote Code Execution - Python 3.x

PoC: THM-Vulnerability_Capstone-CVE-2018-16763

A write up on the THM room Vulnerability Capstone & Exploit script for CVE-2018-16763.

PoC: Fu3l-F1lt3r

Rust implementation of CVE-2018-16763 with some extra features.

PoC: CVE-2018-16763

CVE 2018-16763

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free