ZeroHour

CVE-2018-18084

PoC ×2
CVSS 3.1
9.8 critical
EPSS
1%p68
Published
()
Modified
Description

An issue was discovered in DuomiCMS 3.0. SQL injection exists in the ajax.php file, as demonstrated by the uid parameter.

Vendors
comsenz
Products
duomicms
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.