What happened
A public source linked this CVE to an advisory or demonstration repository. Review the original reference before use.
Affected versions
Unknown product: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
Exploit-DB 47138fuel CMS 1.4.1 - Remote Code Execution (1)0xd0ff92019-07-19VerifiedExploit-DB 49487Fuel CMS 1.4.1 - Remote Code Execution (2)Alexandre ZANNI2021-01-28VerifiedExploit-DB 50477Fuel CMS 1.4.1 - Remote Code Execution (3)Padsala Trushal2021-11-03VerifiedSploitusExploit for CVE-2018-16763. CVSS 9.8.Sploitus index2026-09-05T12:38:51+00:00CandidatePoC-in-GitHub · dinhbaouit/CVE-2018-16763CVE 2018-16763★ 1dinhbaouit2020-03-26CandidatePoC-in-GitHub · hikarihacks/CVE-2018-16763-exploitThis is an updated version of the CVE-2018-16763 for fuelCMS 1.4.1★ 2hikarihacks2020-09-03CandidatePoC-in-GitHub · n3m1sys/CVE-2018-16763-Exploit-Python3★ 4n3m1sys2020-10-10CandidatePoC-in-GitHub · uwueviee/Fu3l-F1lt3rRust implementation of CVE-2018-16763 with some extra features.★ 0uwueviee2021-01-15CandidatePoC-in-GitHub · shoamshilo/Fuel-CMS-Remote-Code-Execution-1.4--RCE--A working PoC to CVE-2018-16763★ 3shoamshilo2021-03-07CandidatePoC-in-GitHub · kxisxr/Bash-Script-CVE-2018-16763FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.★ 2kxisxr2021-09-27CandidatePoC-in-GitHub · padsalatushal/CVE-2018-16763Fuel CMS 1.4.1 - Remote Code Execution★ 6padsalatushal2021-11-03CandidatePoC-in-GitHub · wizardy0ga/THM-Vulnerability_Capstone-CVE-2018-16763A write up on the THM room Vulnerability Capstone & Exploit script for CVE-2018-16763.★ 0wizardy0ga2021-11-22CandidatePoC-in-GitHub · h3x0v3rl0rd/CVE-2018-16763★ 2h3x0v3rl0rd2022-01-08CandidatePoC-in-GitHub · BrunoPincho/cve-2018-16763-rust★ 0BrunoPincho2022-01-27CandidatePoC-in-GitHub · p0dalirius/CVE-2018-16763-FuelCMS-1.4.1-RCEExploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.★ 25p0dalirius2022-05-31CandidatePoC-in-GitHub · not1cyyy/CVE-2018-16763CVE-2018-16763 FuelCMS 1.4 Remote Code Execution, this version of FuelCMS is still vulnerable until now★ 2not1cyyy2023-01-03CandidatePoC-in-GitHub · antisecc/CVE-2018-16763★ 0antisecc2023-06-09CandidatePoC-in-GitHub · VitoBonetti/CVE-2018-16763Fuel CMS 1.4.1 - Remote Code Execution - Python 3.x★ 0VitoBonetti2023-07-16CandidatePoC-in-GitHub · kaxm23/exploit_cms_fuelPython3 exploit for Fuel CMS 1.4.1 Remote Code Execution (CVE-2018-16763) with Reverse Shell.★ 1kaxm232023-09-11CandidatePoC-in-GitHub · saccles/CVE_2018_16763_Proof_of_ConceptA Proof-of-Concept (PoC) exploit for CVE-2018-16763 (Fuel CMS - Preauthenticated Remote Code Execution).★ 0saccles2024-12-04CandidatePoC-in-GitHub · altsun/CVE-2018-16763-FuelCMS-1.4.1-RCEFuel CMS 1.4.1 - Remote Code Execution★ 5altsun2025-01-08CandidatePoC-in-GitHub · ArtemCyberLab/Project-Exploiting-a-Vulnerability-in-Fuel-CMS-CVE-2018-16763-The goal of this project was to conduct a security audit of a blog recently launched by Ackme Support Incorporated, identifying any critical vulnerabilities before the site goes public. The task involved finding a way to remotely execute code and gain access to the target system.★ 0ArtemCyberLab2025-04-13CandidatePoC-in-GitHub · bad-c0de/CVE-2018-16763_FuelCMS-1.4.1_RCEFuelCMS 1.4.1 Command Injection/Remote Code Execution.★ 0bad-c0de2025-09-09CandidatePoC-in-GitHub · Cyberuser-hash/CVE-2018-16763exploit for CVE-2018-16763★ 0Cyberuser-hash2025-10-05CandidatePoC-in-GitHub · estebanzarate/CVE-2018-16763-Fuel-CMS-1.4.1-Remote-Code-Execution-PoCUnauthenticated RCE vulnerability in Fuel CMS 1.4.1.★ 1estebanzarate2026-04-09CandidatePoC-in-GitHub · SOME-1HING/CVE-2018-16763Python tool for analyzing CVE-2018-16763 in FUEL CMS with cleaner response parsing and interactive vulnerability checking.★ 0SOME-1HING2026-06-08CandidatePoC-in-GitHub · ShadowR-Root/fuel-cms-cve-2018-16763-python3-portMaintained Python 3 port of the original FUEL CMS CVE-2018-16763 proof-of-concept.★ 0ShadowR-Root2026-08-07CandidatePoC-in-GitHub · gh0stuncle/CVE-2018-16763_fuel_cms_exploitA fuel CMS exploit based on Python for RCE mentioned in CVE-2018-16763.★ 0gh0stuncle2026-08-25CandidateSource timeline
Discovered through Exploit-DBView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.