CVE-2011-5116

Setseed Cms < 5.11.2 - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in setseed-hub in SetSeed CMS 5.8.20, 5.11.2, and earlier allows remote attackers to execute arbitrary SQL commands via the loggedInUser cookie.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · textwebappsphp
https://www.exploit-db.com/exploits/18065

References (2)

Core 2
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/18065

Scores

EPSS 0.0083
EPSS Percentile 74.6%

Details

CWE
CWE-89
Status published
Products (2)
setseed/setseed_cms 5.8.20
setseed/setseed_cms < 5.11.2
Published Aug 23, 2012
Tracked Since Feb 18, 2026