First published: Wed Oct 10 2018(Updated: )
PbootCMS 1.2.1 has SQL injection via the HTTP POST data to the api.php/cms/addform?fcode=1 URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pbootcms Pbootcms | =1.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-18211 is high, with a CVSS score of 8.1.
CVE-2018-18211 affects PbootCMS version 1.2.1.
CVE-2018-18211 is a SQL injection vulnerability in PbootCMS, specifically in the api.php/cms/addform?fcode=1 URI.
To fix CVE-2018-18211, update PbootCMS to a version that has the vulnerability patched.
Yes, you can find more information about CVE-2018-18211 at the following reference link: [https://github.com/Pbootcms/Pbootcms/issues/1](https://github.com/Pbootcms/Pbootcms/issues/1)