SQL Injection Vulnerability in PbootCMS Admin Controller
CVE-2018-18450
9.8CRITICAL
What is CVE-2018-18450?
The PbootCMS application contains a SQL injection vulnerability in the SingleController.php file. This issue arises when improperly sanitized user input is passed to the database via POST requests to the admin.php endpoint. Successful exploitation may allow an attacker to manipulate database queries, potentially leading to unauthorized data access or modification. It is crucial to update to version 1.3.0 build 2018-11-12 or later to mitigate this security risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
