Description e107_admin/banlist.php in e107 2.1.8 allows SQL injection via the old_ip parameter. Remediation References CVE-2018-16389 Related Vulnerabilities Atlassian Jira CVE-2019-8442 Vulnerability (CVE-2019-8442) WordPress Plugin Olimometer SQL Injection (2.56) MySQL CVE-2012-0115 Vulnerability (CVE-2012-0115) WordPress Plugin WP-Recall-Registration, Profile, Commerce & More SQL Injection (16.26.5) PostgreSQL CVE-2024-10978 Vulnerability (CVE-2024-10978) Severity Medium Classification CVE-2018-16389 CWE-138 CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N Tags Missing Update Known Vulnerabilities