CVE-2017-10842: SQL Injection
Published Aug 28, 2017
·Updated
SQL injection vulnerability in the baserCMS 3.0.14 and earlier, 4.0.5 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
2 affected components
baserCMS BaserCMS>=3.0.0<=3.0.14
baserCMS BaserCMS>=4.0.0<=4.0.5
Remediation
Patch Available
Event History
Aug 28, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-10842?
CVE-2017-10842 is considered a high severity SQL injection vulnerability.
2
How do I fix CVE-2017-10842?
To fix CVE-2017-10842, upgrade baserCMS to version 3.0.15 or 4.0.6 or later.
3
What are the affected versions for CVE-2017-10842?
CVE-2017-10842 affects baserCMS versions 3.0.14 and earlier, as well as 4.0.5 and earlier.
4
What kind of attacks can exploit CVE-2017-10842?
CVE-2017-10842 can be exploited by remote attackers to execute arbitrary SQL commands.
5
Is there a public exploit for CVE-2017-10842?
As of now, there are no widely known public exploits available for CVE-2017-10842.