CVE-2018-19559: SQL Injection
Published Nov 26, 2018
·Updated
CuppaCMS before 2018-11-12 has SQL Injection in administrator/classes/ajax/functions.php via the referenceid parameter.
Affected Software
1 affected component
CuppaCMS CuppaCMS<2018-11-12
Event History
Nov 26, 2018
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-19559?
CVE-2018-19559 is considered a medium severity vulnerability due to its potential for SQL Injection attacks.
2
How do I fix CVE-2018-19559?
To fix CVE-2018-19559, update CuppaCMS to the version released after November 12, 2018.
3
Which versions of CuppaCMS are affected by CVE-2018-19559?
CVE-2018-19559 affects all versions of CuppaCMS prior to November 12, 2018.
4
What type of vulnerability is CVE-2018-19559?
CVE-2018-19559 is classified as an SQL Injection vulnerability.
5
What are the implications of CVE-2018-19559 for website security?
CVE-2018-19559 could allow attackers to execute arbitrary SQL queries, potentially compromising the database and sensitive data.