cve/2018/CVE-2018-6893.md
2024-05-26 14:27:05 +02:00

640 B

CVE-2018-6893

Description

controllers/member/Api.php in dayrui FineCms 5.2.0 has SQL Injection: a request with s=member,c=api,m=checktitle, and the parameter 'module' with a SQL statement, lacks effective filtering.

POC

Reference

No PoCs from references.

Github