High
CVSS 7.5
Overview
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows ...
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
This vulnerability is rated 🟠 HIGH.
Recommended actions: