EARCLINK ESPCMS-P8 has SQL injection in the install_pack/index.php?ac=Member&at=verifyAccount verify_key parameter. install_pack/espcms_public/espcms_db.php may allow retrieving sensitive information from the ESPCMS database.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.iwantacve.cn/index.php/archives/108/ |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2019-01-07T18:00:00Z
Updated: 2024-09-16T23:06:26.830Z
Reserved: 2019-01-07T00:00:00Z
Link: CVE-2019-5488

No data.

Status : Modified
Published: 2019-01-07T17:29:00.437
Modified: 2024-11-21T04:45:02.113
Link: CVE-2019-5488

No data.