CVE-2021-38723: SQL Injection
Published Sep 9, 2021
·Updated
FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/pages/items
Affected Software
1 affected component
TheDayLightStudio Fuel CMS=1.5.0
Event History
Sep 9, 2021
CVE Published
via MITRE·02:33 PM
Data Sourced
via MITRE·02:33 PM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-38723?
CVE-2021-38723 is a vulnerability in FUEL CMS 1.5.0 that allows SQL Injection via the 'col' parameter in /fuel/index.php/fuel/pages/items.
2
How severe is CVE-2021-38723?
CVE-2021-38723 has a severity rating of 8.8 (high).
3
How does CVE-2021-38723 affect FUEL CMS?
CVE-2021-38723 affects FUEL CMS versions 1.5.0.
4
Is there a fix for CVE-2021-38723?
Yes, a fix for CVE-2021-38723 is available. Please refer to the official GitHub issue for more information.
5
Where can I find more information about CVE-2021-38723?
You can find more information about CVE-2021-38723 in the official GitHub issue linked in the references.