CVE-2021-46089: SQL Injection
Published Jan 25, 2022
·Updated
In JeecgBoot 3.0, there is a SQL injection vulnerability that can operate the database with root privileges.
Affected Software
1 affected component
Jeecg jeecg boot=3.0
Event History
Jan 25, 2022
CVE Published
via MITRE·02:14 PM
Data Sourced
via MITRE·02:14 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-46089?
The severity of CVE-2021-46089 is critical with a score of 9.8 out of 10.
2
What is CVE-2021-46089?
CVE-2021-46089 is a SQL injection vulnerability in JeecgBoot 3.0 that allows unauthorized access to the database with root privileges.
3
How does CVE-2021-46089 affect JeecgBoot 3.0?
CVE-2021-46089 affects JeecgBoot 3.0 by enabling an attacker to execute arbitrary SQL queries and potentially operate the database as a root user.
4
Is there a fix available for CVE-2021-46089?
Yes, a fix is available for CVE-2021-46089. It is recommended to update to the latest version of JeecgBoot to mitigate the vulnerability.
5
Where can I find more information about CVE-2021-46089?
More information about CVE-2021-46089 can be found at the following reference: [link](https://github.com/jeecgboot/jeecg-boot/issues/3331).