CVE-2018-18450

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
17/10/2018
Last modified:
07/03/2019

Description

apps\admin\controller\content\SingleController.php in PbootCMS before V1.3.0 build 2018-11-12 has SQL Injection, as demonstrated by the POST data to the admin.php/Single/mod/mcode/1/id/3 URI.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pbootcms:pbootcms:*:*:*:*:*:*:*:* 1.3.0 (excluding)