apps\admin\controller\content\SingleController.php in PbootCMS before V1.3.0 build 2018-11-12 has SQL Injection, as demonstrated by the POST data to the admin.php/Single/mod/mcode/1/id/3 URI.
References
Link Resource
http://www.ttk7.cn/post-96.html Exploit Third Party Advisory
https://www.pbootcms.com/changelog.html Product Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-17T22:00:00

Updated: 2018-12-18T15:57:01

Reserved: 2018-10-17T00:00:00


Link: CVE-2018-18450

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-10-17T22:29:00.910

Modified: 2019-03-07T15:49:27.080


Link: CVE-2018-18450

JSON object: View

cve-icon Redhat Information

No data.

CWE