CVE-2014-2245
05.03.2014, 16:37
SQL injection vulnerability in the News module in CMS Made Simple (CMSMS) before 1.11.10 allows remote authenticated users with the "Modify News" permission to execute arbitrary SQL commands via the sortby parameter to admin/moduleinterface.php. NOTE: some of these details are obtained from third party information.
Vendor | Product | Version |
---|---|---|
cmsmadesimple | cms_made_simple | 𝑥 ≤ 1.11.9 |
cmsmadesimple | cms_made_simple | 0.1 |
cmsmadesimple | cms_made_simple | 0.2 |
cmsmadesimple | cms_made_simple | 0.2.1 |
cmsmadesimple | cms_made_simple | 0.3 |
cmsmadesimple | cms_made_simple | 0.3.1 |
cmsmadesimple | cms_made_simple | 0.3.2 |
cmsmadesimple | cms_made_simple | 0.4 |
cmsmadesimple | cms_made_simple | 0.4.1 |
cmsmadesimple | cms_made_simple | 0.5 |
cmsmadesimple | cms_made_simple | 0.5.1 |
cmsmadesimple | cms_made_simple | 0.6 |
cmsmadesimple | cms_made_simple | 0.6.1 |
cmsmadesimple | cms_made_simple | 0.6.2 |
cmsmadesimple | cms_made_simple | 0.6.3 |
cmsmadesimple | cms_made_simple | 0.7 |
cmsmadesimple | cms_made_simple | 0.7.1 |
cmsmadesimple | cms_made_simple | 0.7.2 |
cmsmadesimple | cms_made_simple | 0.7.3 |
cmsmadesimple | cms_made_simple | 0.8 |
cmsmadesimple | cms_made_simple | 0.8.1 |
cmsmadesimple | cms_made_simple | 0.8.2 |
cmsmadesimple | cms_made_simple | 0.9 |
cmsmadesimple | cms_made_simple | 0.9.1 |
cmsmadesimple | cms_made_simple | 0.9.2 |
cmsmadesimple | cms_made_simple | 0.10 |
cmsmadesimple | cms_made_simple | 0.10.1 |
cmsmadesimple | cms_made_simple | 0.10.2 |
cmsmadesimple | cms_made_simple | 0.10.3 |
cmsmadesimple | cms_made_simple | 0.10.4 |
cmsmadesimple | cms_made_simple | 0.11 |
cmsmadesimple | cms_made_simple | 0.11.1 |
cmsmadesimple | cms_made_simple | 0.11.2 |
cmsmadesimple | cms_made_simple | 0.12 |
cmsmadesimple | cms_made_simple | 0.12.1 |
cmsmadesimple | cms_made_simple | 0.12.2 |
cmsmadesimple | cms_made_simple | 0.13 |
cmsmadesimple | cms_made_simple | 1.0 |
cmsmadesimple | cms_made_simple | 1.0.1 |
cmsmadesimple | cms_made_simple | 1.0.2 |
cmsmadesimple | cms_made_simple | 1.0.3 |
cmsmadesimple | cms_made_simple | 1.0.4 |
cmsmadesimple | cms_made_simple | 1.0.5 |
cmsmadesimple | cms_made_simple | 1.0.6 |
cmsmadesimple | cms_made_simple | 1.1 |
cmsmadesimple | cms_made_simple | 1.1.1 |
cmsmadesimple | cms_made_simple | 1.1.2 |
cmsmadesimple | cms_made_simple | 1.1.3 |
cmsmadesimple | cms_made_simple | 1.1.3.1 |
cmsmadesimple | cms_made_simple | 1.1.4 |
cmsmadesimple | cms_made_simple | 1.10 |
cmsmadesimple | cms_made_simple | 1.10.1 |
cmsmadesimple | cms_made_simple | 1.10.2 |
cmsmadesimple | cms_made_simple | 1.10.3 |
cmsmadesimple | cms_made_simple | 1.11 |
cmsmadesimple | cms_made_simple | 1.11.1 |
cmsmadesimple | cms_made_simple | 1.11.2 |
cmsmadesimple | cms_made_simple | 1.11.2.1 |
cmsmadesimple | cms_made_simple | 1.11.3 |
cmsmadesimple | cms_made_simple | 1.11.4 |
cmsmadesimple | cms_made_simple | 1.11.5 |
cmsmadesimple | cms_made_simple | 1.11.6 |
cmsmadesimple | cms_made_simple | 1.11.7 |
cmsmadesimple | cms_made_simple | 1.11.8 |
𝑥
= Vulnerable software versions
References