CVE-2018-16389: SQL Injection
Published Sep 12, 2018
·Updated
e107admin/banlist.php in e107 2.1.8 allows SQL injection via the oldip parameter.
Affected Software
1 affected component
e107 e107=2.1.8
Remediation
Event History
Sep 12, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-16389.
2
What is the title of this vulnerability?
The title of this vulnerability is 'e107_admin/banlist.php in e107 2.1.8 allows SQL injection via the old_ip parameter.'
3
What is the severity of CVE-2018-16389?
The severity of CVE-2018-16389 is medium with a severity value of 6.5.
4
How does CVE-2018-16389 affect e107?
CVE-2018-16389 affects e107 version 2.1.8.
5
How can I fix CVE-2018-16389?
To fix CVE-2018-16389, update e107 to a version that is not affected by the vulnerability.