[KIS-2022-04] ImpressCMS <= 1.4.3 (findusers.php) SQL Injection Vulnerability

Read Time:14 Second

Posted by Egidio Romano on Mar 22

—————————————————————
ImpressCMS <= 1.4.3 (findusers.php) SQL Injection Vulnerability
—————————————————————

[-] Software Link:

https://www.impresscms.org

[-] Affected Versions:

Version 1.4.3 and prior versions.

[-] Vulnerability Description:

The vulnerability is located in the /include/findusers.php script:

281.            $total =…

Read More