First published: Fri Feb 03 2023(Updated: )
SQL injection vulnerability in JIZHICMS 1.9.5 allows attackers to run arbitrary SQL commands via add or edit article page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jizhicms Jizhicms | =1.9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-36484 is critical with a severity value of 9.8.
JIZHICMS version 1.9.5 is affected by CVE-2021-36484.
CVE-2021-36484 allows attackers to run arbitrary SQL commands through the 'add' or 'edit' article page in JIZHICMS 1.9.5.
A fix for CVE-2021-36484 may be available from the JIZHICMS developers. It is recommended to update to a patched version of JIZHICMS.
More information about CVE-2021-36484 can be found at the following link: [CVE-2021-36484](https://www.notion.so/JIZHICMS-v1-9-5-SQL-Injection-3a71102958584a20bf22c052c7778bbd).