Unrated severityNVD Advisory· Published Dec 13, 2013· Updated Jun 17, 2026
CVE-2013-6839
CVE-2013-6839
Description
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:instantsoft:instantcms:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:instantsoft:instantcms:*:*:*:*:*:*:*:*range: <=1.10.3
- (no CPE)range: <=1.10.3
Patches
Vulnerability mechanics
References
5- www.instantcms.ru/novosti/security-update-1-10-3.htmlnvdPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2013-12/0049.htmlnvdExploit
- www.htbridge.com/advisory/HTB23185nvdExploit
- secunia.com/advisories/56041nvdVendor Advisory
- www.securityfocus.com/bid/63842nvd
News mentions
0No linked articles in our index yet.