Critical severity9.8OSV Advisory· Published Mar 14, 2018· Updated Jun 17, 2026
CVE-2018-7474
CVE-2018-7474
Description
An issue was discovered in Textpattern CMS 4.6.2 and earlier. It is possible to inject SQL code in the variable "qty" on the page index.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
34.2.0, 4.3.0, 4.4.0, …+ 2 more
- (no CPE)range: 4.2.0, 4.3.0, 4.4.0, …
- cpe:2.3:a:textpattern:textpattern:*:*:*:*:*:*:*:*range: <=4.6.2
- (no CPE)range: <=4.6.2
Patches
Vulnerability mechanics
References
2- seclists.org/fulldisclosure/2018/Mar/34nvdExploitMailing ListThird Party Advisory
- www.exploit-db.com/exploits/44277/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.