CVE-2021-47872
EUVD-2026-361321.01.2026, 18:16
SEO Panel versions prior to 4.9.0 contain a blind SQL injection vulnerability in the archive.php page that allows authenticated attackers to manipulate database queries through the 'order_col' parameter. Attackers can use sqlmap to exploit the vulnerability and extract database information by injecting malicious SQL code into the order column parameter.
Awaiting analysis
This vulnerability is currently awaiting analysis.