First published: Mon Jan 31 2022(Updated: )
Victor CMS v1.0 was discovered to contain a SQL injection vulnerability in the component admin/posts.php?source=add_post. This vulnerability can be exploited through a crafted POST request via the post_title parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Victor Cms Project Victor Cms | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-46458 is high.
The affected software for CVE-2021-46458 is Victor CMS v1.0.
CVE-2021-46458 can be exploited through a crafted POST request via the post_title parameter.
Yes, you can refer to the following links for more information: - [CVE-2021-46458 on GitHub](https://github.com/Nguyen-Trung-Kien/CVE) - [CVE-2021-46458 PDF Report](https://github.com/Nguyen-Trung-Kien/CVE/blob/main/CVE-2021-46458/CVE-2021-46458.pdf)
The CWE ID for CVE-2021-46458 is 89.