S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2018-16288 Scanner

CVE-2018-16288 scanner - Local File Inclusion (LFI) vulnerability in LG SuperSign CMS

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.4k
Times Used
continuous scan runs
4.2k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2018-16288
8.6
CVSS

LG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

LG SuperSign CMS is a content management system developed for digital signage networks. It provides a user-friendly interface for content creation, scheduling, and distribution across multiple displays. The software supports a variety of media formats and allows for centralized control of different locations, making it an ideal choice for businesses with multiple branches or campuses.

However, despite its usefulness, the system has a security flaw known as CVE-2018-16288. This vulnerability allows attackers to read arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs. Essentially, an attacker could use this flaw to access sensitive information stored on the network, including customer data and proprietary information.

If exploited, this vulnerability could lead to serious consequences. Not only could it expose confidential data, but it could also disrupt business operations, degrade customer trust, and result in a financial loss. This underscores the importance of patching such vulnerabilities in a timely manner to prevent cyber attacks and other malicious activities.

It's important to note that no software is immune to vulnerabilities, hence why it's critical to continuously monitor and assess the security posture of digital assets. Thanks to the pro features of the s4e.io platform, you can easily and quickly learn about vulnerabilities in your digital assets, and take corrective action to prevent data breaches and other cyber threats. By staying vigilant and proactive, businesses can mitigate the risks associated with security flaws and ensure a secure and successful digital transformation.

 

REFERENCES

Solution Advice

To protect against this vulnerability, here are some precautions that can be taken:

  • Install the latest software updates and security patches.
  • Limit network access to authorized employees only.
  • Implement access controls, such as two-factor authentication and strong passwords.
  • Regularly monitor network activity and set up alerts for suspicious behavior.
  • Use network segmentation to isolate critical assets from non-critical ones.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2018-16288 scanner - Local File Inclusion (LFI) vulnerability in LG SuperSign CMS | S4E