VYPR
Critical severity9.8NVD Advisory· Published Oct 17, 2018· Updated Jun 17, 2026

CVE-2018-18427

CVE-2018-18427

Description

s-cms 3.0 allows SQL Injection via the member/post.php 0_id parameter or the POST data to member/member_login.php.

Affected products

2
  • S CMS/S CMSllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • cpe:2.3:a:s-cms:s-cms:3.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.