Lucene search

K
cvelistMitreCVELIST:CVE-2018-18546
HistoryOct 21, 2018 - 1:00 a.m.

CVE-2018-18546

2018-10-2101:00:00
mitre
www.cve.org
2
thinkphp sql injection parseorder

AI Score

10

Confidence

High

EPSS

0.002

Percentile

53.7%

ThinkPHP 3.2.4 has SQL Injection via the order parameter because the Library/Think/Db/Driver.class.php parseOrder function mishandles the key variable.

AI Score

10

Confidence

High

EPSS

0.002

Percentile

53.7%

Related for CVELIST:CVE-2018-18546