Lucene search

K
cvelistMitreCVELIST:CVE-2018-19898
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2018-19898

2022-10-0316:21:55
mitre
www.cve.org
thinkcmf x2.2.2
sql injection
edit_post
articlecontroller.class.php
normal authenticated users
post[id][1]
article edit_post action

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.7%

ThinkCMF X2.2.2 has SQL Injection via the method edit_post in ArticleController.class.php and is exploitable by normal authenticated users via the post[id][1] parameter in an article edit_post action.

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.7%

Related for CVELIST:CVE-2018-19898