Логотип exploitDog
bind:CVE-2018-18285
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-18285

Количество 2

Количество 2

nvd логотип

CVE-2018-18285

почти 7 лет назад

SQL injection vulnerabilities in CMG Suite 8.4 SP2 and earlier, could allow an unauthenticated attacker to conduct an SQL injection attack due to insufficient input validation for the login interface. A successful exploit could allow an attacker to extract sensitive information from the database and execute arbitrary scripts.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-47f3-97c9-28vx

больше 3 лет назад

SQL injection vulnerabilities in CMG Suite 8.4 SP2 and earlier, could allow an unauthenticated attacker to conduct an SQL injection attack due to insufficient input validation for the login interface. A successful exploit could allow an attacker to extract sensitive information from the database and execute arbitrary scripts.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-18285

SQL injection vulnerabilities in CMG Suite 8.4 SP2 and earlier, could allow an unauthenticated attacker to conduct an SQL injection attack due to insufficient input validation for the login interface. A successful exploit could allow an attacker to extract sensitive information from the database and execute arbitrary scripts.

CVSS3: 9.8
1%
Низкий
почти 7 лет назад
github логотип
GHSA-47f3-97c9-28vx

SQL injection vulnerabilities in CMG Suite 8.4 SP2 and earlier, could allow an unauthenticated attacker to conduct an SQL injection attack due to insufficient input validation for the login interface. A successful exploit could allow an attacker to extract sensitive information from the database and execute arbitrary scripts.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу