vendor:
QuickUpCMS
by:
Lidloses_Auge
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: QuickUpCMS
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008
QuickUpCMS – SQL Injection Exploit
QuickUpCMS is vulnerable to SQL Injection. This exploit allows an attacker to extract user credentials from the database. The vulnerability is due to the lack of proper input validation in the application. The exploit is coded by Lidloses_Auge and was discovered in 2008.
Mitigation:
Input validation should be implemented to prevent SQL Injection attacks.