CVE-2018-18211: SQL Injection
Published Oct 10, 2018
·Updated
PbootCMS 1.2.1 has SQL injection via the HTTP POST data to the api.php/cms/addform?fcode=1 URI.
Affected Software
1 affected component
Pbootcms Pbootcms=1.2.1
Event History
Oct 10, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18211?
The severity of CVE-2018-18211 is high, with a CVSS score of 8.1.
2
How does CVE-2018-18211 affect PbootCMS?
CVE-2018-18211 affects PbootCMS version 1.2.1.
3
What is the vulnerability in CVE-2018-18211?
CVE-2018-18211 is a SQL injection vulnerability in PbootCMS, specifically in the api.php/cms/addform?fcode=1 URI.
4
How can I fix CVE-2018-18211?
To fix CVE-2018-18211, update PbootCMS to a version that has the vulnerability patched.
5
Is there any additional information about CVE-2018-18211?
Yes, you can find more information about CVE-2018-18211 at the following reference link: [https://github.com/Pbootcms/Pbootcms/issues/1](https://github.com/Pbootcms/Pbootcms/issues/1)