Loading vulnerability details…
CVSS v3.1
N/A
EPSS
60.79%
Published
Nov 27, 2018
Modified
Nov 21, 2024
Public PoC / Exploit (2)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
NUUO CMS All versions 3.3 and prior the web server application allows injection of arbitrary SQL characters, which can be used to inject SQL into an executing statement and allow arbitrary code execution.
Weaknesses (CWE)
Affected Products (1)
References (4)