← Back to CVE List

CVE-2018-19558

Published: 2018-11-26T07:29Z
Last Modified: 2024-11-21T03:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in arcms through 2018-03-19. SQL injection exists via the json/newslist limit parameter because of ctl/main/Json.php, ctl/main/service/Data.php, and comp/Db/Mysql.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt