e107 Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2018-16389 - Vulnerability Database

e107 Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2018-16389

Medium
Reference: CVE-2018-16389
Title: e107 Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

e107_admin/banlist.php in e107 2.1.8 allows SQL injection via the old_ip parameter.