Описание
Ming-Soft MCMS vulnerable to SQL injection
SQL Injection vulnerability found in Ming-Soft MCMS v.4.7.2 allows a remote attacker to execute arbitrary code via basic_title parameter. This issue is resolved in v5.1.
Пакеты
Наименование
net.mingsoft:ms-mcms
maven
Затронутые версииВерсия исправления
< 5.1
5.1
Связанные уязвимости
CVSS3: 9.8
nvd
почти 3 года назад
SQL Injection vulnerability found in Ming-Soft MCMS v.4.7.2 allows a remote attacker to execute arbitrary code via basic_title parameter.