cpe:/a:ucms_project:ucms:1.4.6 CVE-2018-17037 2018-09-14T03:29:00.610-04:00 2019-10-02T20:03:26.223-04:00 6.5 NETWORK LOW SINGLE_INSTANCE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2018-11-01T11:12:39.697-04:00 MISC https://github.com/blackstar24/UCMS/blob/master/level.md user/editpost.php in UCMS 1.4.6 mishandles levels, which allows escalation from the normal user level of 1 to the superuser level of 3.