CVE-2018-18923

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
13/12/2018
Last modified:
02/01/2019

Description

AbiSoft Ticketly 1.0 is affected by multiple SQL Injection vulnerabilities through the parameters name, category_id and description in action/addproject.php; kind_id, priority_id, project_id, status_id and title in action/addticket.php; and kind_id and status_id in reports.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:abisoftgt:ticketly:1.0:*:*:*:*:*:*:*