CVE-2018-11535: Sitemakin Slac
Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.
An issue was discovered in SITEMAKIN SLAC (Site Login and Access Control) v1.0. The parameter "my_item_search" in users.php is exploitable using SQL injection.
Affected products
- Sitemakin Slac: version 1.0 only
Published 2018-05-29. Last modified 2026-06-17.