CVE-2021-28419
The "order_col" parameter in archive.php of SEO Panel 4.8.0 is vulnerable to time-based blind SQL injection, which leads to the ability to retrieve all databases.
- Affected products
- Seo Panel
- Seopanel Seo Panel
- = 4.8.0
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 10.7% (96th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2021-03-18
CVE-2021-28419 at NVD
3 known exploits for CVE-2021-28419
Proof-of-concept code and exploit modules indexed by Sploitus