CVE-2021-43091: SQL Injection
Published Mar 25, 2022
·Updated
An SQL Injection vlnerability exits in Yeswiki doryphore 20211012 via the email parameter in the registration form.
Affected Software
1 affected component
YesWiki YesWiki=4.1.0
Remediation
Event History
Mar 25, 2022
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-43091?
CVE-2021-43091 is classified as a high severity SQL Injection vulnerability.
2
How do I fix CVE-2021-43091?
To fix CVE-2021-43091, ensure that input validation and parameterized queries are implemented for the email parameter in the registration form.
3
In which software versions is CVE-2021-43091 present?
CVE-2021-43091 affects YesWiki version 4.1.0.
4
What type of vulnerability is CVE-2021-43091?
CVE-2021-43091 is an SQL Injection vulnerability.
5
Could CVE-2021-43091 allow attackers to access sensitive data?
Yes, CVE-2021-43091 could potentially allow attackers to access or manipulate sensitive data in the database.