CVE-2007-2473: SQL Injection
Published May 2, 2007
·Updated
SQL injection vulnerability in stylesheet.php in CMS Made Simple 1.0.5 and earlier allows remote attackers to execute arbitrary SQL commands via the templateid parameter.
Affected Software
1 affected component
CMSmadesimple CMS Made Simple<=1.0.5
Remediation
Event History
May 2, 2007
CVE Published
11:19 PM
May 3, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2473?
CVE-2007-2473 has a high severity rating due to the potential for remote attackers to execute arbitrary SQL commands.
2
How can I fix CVE-2007-2473?
Fix CVE-2007-2473 by upgrading to CMS Made Simple version 1.0.6 or later, which addresses this vulnerability.
3
What are the consequences of exploiting CVE-2007-2473?
Exploitation of CVE-2007-2473 can lead to unauthorized access to the database, potential data leakage, and loss of integrity.
4
Which versions of CMS Made Simple are affected by CVE-2007-2473?
CVE-2007-2473 affects CMS Made Simple versions 1.0.5 and earlier.
5
What is the impacted component for CVE-2007-2473?
The impacted component for CVE-2007-2473 is the stylesheet.php file in the CMS Made Simple application.