vendor:
Arcadem Pro
by:
Mr.SQL
8,8
CVSS
HIGH
Blind SQL Injection
89
CWE
Product Name: Arcadem Pro
Affected Version From: 2.8
Affected Version To: 2.8
Patch Exists: YES
Related CWE: N/A
CPE: a:arcadem:arcadem_pro
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Arcadem Pro 2.8 Blind SQL Injection Exploit
Arcadem Pro 2.8 is vulnerable to Blind SQL Injection in the index.php article parameter. An attacker can exploit this vulnerability to gain access to the database and execute arbitrary SQL commands.
Mitigation:
Upgrade to the latest version of Arcadem Pro 2.8