CVE-2018-10050: Iscripts Eswap

High severity, CVSS 7.2. EPSS: 1% chance of exploitation in the next 30 days.

iScripts eSwap v2.4 has SQL injection via the "registration_settings.php" ddlFree parameter in the Admin Panel.

Affected products

Published 2018-04-11. Last modified 2026-06-17.