youke365 v1.1.5 has SQL injection via admin/login.html, as demonstrated by username=admin&pass=123456&code=9823&act=login&submit=%E7%99%BB+%E9%99%86.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-11T14:00:00

Updated: 2024-08-05T11:01:15.102Z

Reserved: 2018-10-11T00:00:00

Link: CVE-2018-18242

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-10-11T14:29:00.237

Modified: 2024-11-21T03:55:34.420

Link: CVE-2018-18242

cve-icon Redhat

No data.