Critical severity9.8NVD Advisory· Published Dec 11, 2025· Updated Jun 17, 2026
CVE-2024-58308
CVE-2024-58308
Description
Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:opensolution:quick_cms:6.7:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:opensolution:quick_cms:6.7:*:*:*:*:*:*:*
- (no CPE)range: =6.7
- (no CPE)range: 6.7
Patches
Vulnerability mechanics
References
4- opensolution.org/download/home.htmlnvdExploit
- www.exploit-db.com/exploits/51910nvdExploit
- www.vulncheck.com/advisories/quickcms-sql-injection-authentication-bypass-via-admin-loginnvdThird Party Advisory
- www.opensolution.orgnvdProduct
News mentions
0No linked articles in our index yet.