A vulnerability was found in Getfuelcms Fuel CMS 1.4.13 . It has been declared as critical . The affected element is an unknown function of the component Activity Log Interface . Such manipulation of the argument col leads to sql injection. This vulnerability is referenced as CVE-2021-47980 . It is possible to launch the attack remotely. Furthermore, an exploit is available.