An issue was discovered in AikCms v2.0. There is a SQL Injection vulnerability via $_GET['del'], as demonstrated by an admin/page/system/nav.php?del= URI.
References
Link Resource
https://github.com/kikulo/DebugOpen/blob/master/Aikcms2.0/main.md Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-27T13:57:51

Updated: 2019-04-27T13:57:51

Reserved: 2019-04-27T00:00:00


Link: CVE-2019-11567

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-04-27T14:29:00.557

Modified: 2019-04-29T18:35:11.860


Link: CVE-2019-11567

JSON object: View

cve-icon Redhat Information

No data.

CWE