CVE-2013-6839
13.12.2013, 18:07
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
| Vendor | Product | Version |
|---|---|---|
| instantsoft | instantcms | 𝑥 ≤ 1.10.3 |
𝑥
= Vulnerable software versions
References