CVE-2018-18450: SQL Injection
Published Oct 17, 2018
·Updated
apps\admin\controller\content\SingleController.php in PbootCMS before V1.3.0 build 2018-11-12 has SQL Injection, as demonstrated by the POST data to the admin.php/Single/mod/mcode/1/id/3 URI.
Affected Software
1 affected component
Pbootcms Pbootcms<1.3.0
Event History
Oct 17, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this PbootCMS vulnerability?
The vulnerability ID for this PbootCMS vulnerability is CVE-2018-18450.
2
What is the severity of CVE-2018-18450?
The severity of CVE-2018-18450 is critical with a severity value of 9.8.
3
How does CVE-2018-18450 affect PbootCMS?
CVE-2018-18450 affects PbootCMS versions up to and including 1.3.0.
4
What is the description of CVE-2018-18450?
CVE-2018-18450 is an SQL Injection vulnerability in apps\admin\controller\content\SingleController.php in PbootCMS before V1.3.0 build 2018-11-12.
5
How can I fix the CVE-2018-18450 vulnerability?
To fix the CVE-2018-18450 vulnerability, you should update PbootCMS to version 1.3.0 or later.