Withdrawn Advisory: Daylight Studio FUEL-CMS SQLi Vulnerability
High severity
GitHub Reviewed
Published
Aug 11, 2023
to the GitHub Advisory Database
•
Updated Jul 2, 2025
Withdrawn
This advisory was withdrawn on Jul 2, 2025
Description
Published by the National Vulnerability Database
Aug 11, 2023
Published to the GitHub Advisory Database
Aug 11, 2023
Reviewed
Aug 11, 2023
Withdrawn
Jul 2, 2025
Last updated
Jul 2, 2025
Withdrawn Advisory
This advisory has been withdrawn because this vulnerability does not affect a package in a supported ecosystem. This link has been maintained to preserve external references.
Original Description
SQL Injection vulnerability in file
Base_module_model.php
in Daylight Studio FUEL-CMS version 1.4.9, allows remote attackers to execute arbitrary code via thecol
parameter to functionlist_items
.References