Quick.CMS 6.7 SQL Injection Authentication Bypass via Admin Login
Vulnerability Description
Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-58308
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Diyar ./H4X.Forensics
References
More from opensolution
View All →Affected Vendor
opensolution
View all reports →