CVE-2018-11535

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
29/05/2018
Last modified:
29/06/2018

Description

An issue was discovered in SITEMAKIN SLAC (Site Login and Access Control) v1.0. The parameter "my_item_search" in users.php is exploitable using SQL injection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sitemakin:slac:1.0:*:*:*:*:*:*:*