CVE-2018-11722
EUVD-2018-374105.06.2018, 12:29
WUZHI CMS 4.1.0 has a SQL Injection in api/uc.php via the 'code' parameter, because 'UC_KEY' is hard coded.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wuzhicms | wuzhicms | 4.1.0 |
𝑥
= Vulnerable software versions