Unrated severityNVD Advisory· Published Dec 13, 2013· Updated Apr 29, 2026
CVE-2013-6839
CVE-2013-6839
Description
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.instantcms.ru/novosti/security-update-1-10-3.htmlnvdPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2013-12/0049.htmlnvdExploit
- www.htbridge.com/advisory/HTB23185nvdExploit
- secunia.com/advisories/56041nvdVendor Advisory
- www.securityfocus.com/bid/63842nvd
News mentions
0No linked articles in our index yet.