ColdBookmarks version 1.22 suffers from a remote SQL injection vulnerability.
cbc6927bea9de3b2ea85cd00fb54c888f98661bfc25de495e995b16883d6ad8e
# ColdGen - coldbookmarks v1.22 Remote 0day SQL Injection vulnerability
# Vendor: https://www.coldgen.com/
# Found by: mr_me (net-ninja.net)
PoC
https://[target]/[path]/index.cfm?fuseaction=EditBookmark&BookmarkID=[SQLi]&CFID=XXXXXX&CFTOKEN=XXXXXXXX