Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

M40K1N9

#34403of 53,635
7.5Total CVSS
Vulnerabilities · 1
PT-2021-17830
7.5
2021-03-31
Pbootcms · Pbootcms · CVE-2021-28245
Name of the Vulnerable Software and Affected Versions: PbootCMS version 3.0.4 Description: The issue allows for SQL injection through the `search` parameter in `index.php`, potentially revealing sensitive information and enabling the addition of an admin account. Recommendations: For PbootCMS version 3.0.4, consider restricting access to the `index.php` endpoint until a patch is available, and avoid using the `search` parameter to minimize the risk of exploitation.