Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:seopanel:seo_panel:4.10.0:*:*:*:*:*:*:* |
Fri, 23 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Seopanel
Seopanel seo Panel |
|
| Vendors & Products |
Seopanel
Seopanel seo Panel |
Thu, 22 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 21 Jan 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SEO Panel versions prior to 4.9.0 contain a blind SQL injection vulnerability in the archive.php page that allows authenticated attackers to manipulate database queries through the 'order_col' parameter. Attackers can use sqlmap to exploit the vulnerability and extract database information by injecting malicious SQL code into the order column parameter. | |
| Title | SEO Panel < 4.9.0 - 'order_col' Blind SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-07T14:06:23.860Z
Reserved: 2026-01-18T12:35:05.171Z
Link: CVE-2021-47872
Updated: 2026-01-22T16:45:41.263Z
Status : Deferred
Published: 2026-01-21T18:16:20.353
Modified: 2026-04-15T00:35:42.020
Link: CVE-2021-47872
No data.
OpenCVE Enrichment
Updated: 2026-01-22T10:08:59Z