vendor:
Exponent CMS
by:
Manuel GarcAa CA!rdenas
9,8
CVSS
CRITICAL
SQL Injection
89
CWE
Product Name: Exponent CMS
Affected Version From: Exponent CMS <= v2.3.9
Affected Version To: Exponent CMS <= v2.3.9
Patch Exists: YES
Related CWE: CVE-2016-7400
CPE: a:exponentcms:exponent_cms
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2016
Blind SQL Injection in Exponent CMS <= v2.3.9
This bug was found using the portal in the index.php page. To exploit the vulnerability only is needed use the version 1.0 of the HTTP protocol to interact with the application. It is possible to inject SQL code in the 'index.php' page '/exponent/index.php'.
Mitigation:
Vendor fix the vulnerability: http://www.exponentcms.org/news/updated-patches-released-for-v2-1-4-and-v2-2-3-1473726129-0.50310400