First published: Mon Apr 22 2019(Updated: )
whatsns 4.0 allows index.php?question/ajaxadd.html title SQL injection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
=4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11450 has been categorized as a medium severity vulnerability due to its potential for SQL injection.
To fix CVE-2019-11450, you should sanitize and validate all user inputs in the affected `index.php?question/ajaxadd.html` endpoint.
CVE-2019-11450 is an SQL injection vulnerability that allows attackers to manipulate SQL queries.
CVE-2019-11450 specifically affects Whatsns version 4.0.
Exploitation of CVE-2019-11450 can lead to unauthorized data access, data corruption, or compromise of the database.