Vulnerabilities > Instantsoft

DATE CVE VULNERABILITY TITLE RISK
2013-12-13 CVE-2013-6839 SQL Injection vulnerability in Instantsoft Instantcms 1.10.3
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
network
low complexity
instantsoft CWE-89
7.5