CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
exploit
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2018-19895
Severity
HIGH
CVSS
7.2
EPSS
1.33%
Original NVD Description
ThinkCMF X2.2.2 has SQL Injection via the function edit_post() in NavController.class.php and is exploitable with the manager privilege via the parentid parameter in a nav action.