Record summary

CVE-2018-13045 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.

Description

SQL injection vulnerability in the "Bazar" page in Yeswiki Cercopitheque 2018-06-19-1 and earlier allows attackers to execute arbitrary SQL commands via the "id" parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBYeswiki Cercopitheque - 'id' SQL InjectionExploitDB exploitby Mickael BROUTYNot analyzed1 file
ExploitDB

PoC details

References

3