Vulnerability Description
SQL injection exists in ADD Clicking MLM Software 1.0, Binary MLM Software 1.0, Level MLM Software 1.0, Singleleg MLM Software 1.0, Autopool MLM Software 1.0, Investment MLM Software 1.0, Bidding MLM Software 1.0, Moneyorder MLM Software 1.0, Repurchase MLM Software 1.0, and Gift MLM Software 1.0 via the member/readmsg.php msg_id parameter, the member/tree.php pid parameter, or the member/downline.php m_id parameter.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mlmsoftwarez | Add Clicking Mlm Software | 1.0 |
| Mlmsoftwarez | Autopool Mlm Software | 1.0 |
| Mlmsoftwarez | Bidding Mlm Software | 1.0 |
| Mlmsoftwarez | Binary Mlm Software | 1.0 |
| Mlmsoftwarez | Gift Mlm Software | 1.0 |
| Mlmsoftwarez | Investmen Mlm Software | 1.0 |
| Mlmsoftwarez | Level Mlm Software | 1.0 |
| Mlmsoftwarez | Moneyorder Mlm Software | 1.0 |
| Mlmsoftwarez | Repurchase Mlm Software | 1.0 |
| Mlmsoftwarez | Singleleg Mlm Software | 1.0 |
Related Weaknesses (CWE)
References
- https://www.exploit-db.com/author/?a=8844Third Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/45511Third Party AdvisoryVDB Entry
- https://www.exploit-db.com/author/?a=8844Third Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/45511Third Party AdvisoryVDB Entry
FAQ
What is CVE-2018-17843?
CVE-2018-17843 is a vulnerability with a CVSS score of 9.8 (CRITICAL). SQL injection exists in ADD Clicking MLM Software 1.0, Binary MLM Software 1.0, Level MLM Software 1.0, Singleleg MLM Software 1.0, Autopool MLM Software 1.0, Investment MLM Software 1.0, Bidding MLM ...
How severe is CVE-2018-17843?
CVE-2018-17843 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-17843?
Check the references section above for vendor advisories and patch information. Affected products include: Mlmsoftwarez Add Clicking Mlm Software, Mlmsoftwarez Autopool Mlm Software, Mlmsoftwarez Bidding Mlm Software, Mlmsoftwarez Binary Mlm Software, Mlmsoftwarez Gift Mlm Software.