CVE-2018-18084: SQL Injection
Published Oct 9, 2018
·Updated
An issue was discovered in DuomiCMS 3.0. SQL injection exists in the ajax.php file, as demonstrated by the uid parameter.
Affected Software
1 affected component
Comsenz Duomicms=3.0
Event History
Oct 9, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18084?
CVE-2018-18084 is classified as a critical SQL injection vulnerability.
2
How do I fix CVE-2018-18084?
To mitigate CVE-2018-18084, it's recommended to validate and sanitize user inputs in the ajax.php file to prevent SQL injection.
3
Which software is affected by CVE-2018-18084?
CVE-2018-18084 affects DuomiCMS version 3.0.
4
What type of vulnerability is CVE-2018-18084?
CVE-2018-18084 is an SQL injection vulnerability that can lead to unauthorized database access.
5
Can CVE-2018-18084 be exploited remotely?
Yes, CVE-2018-18084 can be exploited remotely if the vulnerable application is exposed to the internet.