CVE-2021-45793: SQL Injection
Published Mar 17, 2022
·Updated
Slims9 Bulian 9.4.2 is affected by SQL injection in lib/comment.inc.php. User data can be obtained.
Affected Software
1 affected component
Library Management System=9.4.2
Event History
Mar 17, 2022
CVE Published
via MITRE·11:12 AM
Data Sourced
via MITRE·11:12 AM
Description
Frequently Asked Questions
1
What is CVE-2021-45793?
CVE-2021-45793 is a vulnerability in Slims9 Bulian 9.4.2 that allows for SQL injection in the lib/comment.inc.php file, which can result in the retrieval of user data.
2
How severe is CVE-2021-45793?
CVE-2021-45793 has a severity rating of 7.5 (high).
3
Which version of Slims9 Bulian is affected by CVE-2021-45793?
Slims9 Bulian version 9.4.2 is affected by CVE-2021-45793.
4
How can I fix CVE-2021-45793?
To fix CVE-2021-45793, it is recommended to update Slims9 Bulian to a version that addresses the SQL injection vulnerability in the lib/comment.inc.php file.
5
Where can I find more information about CVE-2021-45793?
More information about CVE-2021-45793 can be found at the following reference: https://github.com/slims/slims9_bulian/issues/123