CVE-2021-44868: SQL Injection
Published Feb 17, 2022
·Updated
A problem was found in ming-soft MCMS v5.1. There is a sql injection vulnerability in /ms/cms/content/list.do
Affected Software
1 affected component
Mingsoft MCMS=5.1
Event History
Feb 17, 2022
CVE Published
via MITRE·03:44 PM
Data Sourced
via MITRE·03:44 PM
Description
Frequently Asked Questions
1
What is CVE-2021-44868?
CVE-2021-44868 is a SQL injection vulnerability in ming-soft MCMS v5.1, specifically in the /ms/cms/content/list.do endpoint.
2
How severe is CVE-2021-44868?
CVE-2021-44868 has a severity rating of 9.8 (critical).
3
How can I verify if my version of ming-soft MCMS is affected by CVE-2021-44868?
If you are using ming-soft MCMS v5.1, your system is affected by CVE-2021-44868.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-44868?
The CWE ID for CVE-2021-44868 is 89 (Improper Neutralization of Special Elements used in an SQL Command).
5
How can I fix CVE-2021-44868?
To fix CVE-2021-44868, it is recommended to apply the latest security patch or update provided by ming-soft to address this vulnerability.