CVE-2018-19331: S-CMS

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

An issue was discovered in S-CMS v1.5. There is a SQL injection vulnerability in search.php via the keyword parameter.

Affected products

  • S-CMS S-CMS: version 1.5 only

Published 2018-11-17. Last modified 2026-06-17.