Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ricew4Ng

#24451of 53,633
9.8Total CVSS
Vulnerabilities · 1
PT-2018-15145
9.8
2018-12-06
Pbootcms · Pbootcms · CVE-2018-19893
**Name of the Vulnerable Software and Affected Versions** PbootCMS version 1.2.1 **Description** The issue is related to SQL injection in the SearchController.php file of PbootCMS. This occurs via the query string in the index.php/Search/index.html endpoint. **Recommendations** For PbootCMS version 1.2.1, consider updating to a newer version that contains a fix for this issue, if available. As a temporary workaround, restrict access to the SearchController.php file to minimize the risk of exploitation. Avoid using the index.php/Search/index.html endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.