CVE-2021-46063: Code Injection
Published Feb 18, 2022
·Updated
MCMS v5.2.5 was discovered to contain a Server Side Template Injection (SSTI) vulnerability via the Template Management module.
Affected Software
1 affected component
Mingsoft MCMS=5.2.5
Event History
Feb 18, 2022
CVE Published
via MITRE·07:36 PM
Data Sourced
via MITRE·07:36 PM
Description
Frequently Asked Questions
1
What is CVE-2021-46063?
CVE-2021-46063 refers to a Server Side Template Injection (SSTI) vulnerability in MCMS v5.2.5.
2
How severe is CVE-2021-46063?
CVE-2021-46063 has a severity rating of 9.1 (critical).
3
What software is affected by CVE-2021-46063?
MCMS v5.2.5 is affected by CVE-2021-46063.
4
How can I fix CVE-2021-46063?
To fix CVE-2021-46063, it is recommended to update MCMS to a version that is not affected by this vulnerability.
5
Where can I find more information about CVE-2021-46063?
More information about CVE-2021-46063 can be found at the following link: [GitHub - ming-soft/MCMS/issues/59](https://github.com/ming-soft/MCMS/issues/59)