WikidForum 2.20 has SQL Injection via the rpc.php parent_post_id or num_records parameter, or the index.php?action=search select_sort parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-09T16:00:00Z

Updated: 2024-09-17T03:38:29.704Z

Reserved: 2018-10-09T00:00:00Z

Link: CVE-2018-18075

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-10-09T17:29:02.147

Modified: 2018-11-21T23:50:22.997

Link: CVE-2018-18075

cve-icon Redhat

No data.