CVE-2024-48231 Information

Description

Funadmin 5.0.2 is vulnerable to SQL Injection via the selectFields parameter in the index method of \backend\controller\auth\Auth.php.

Reference

https://github.com/funadmin/funadmin/issues/29

Share on: