CVE-2022-26585: SQL Injection
Published Apr 5, 2022
·Updated
Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability via /cms/content/list.
Affected Software
1 affected component
Mingsoft MCMS=5.2.7
Event History
Apr 5, 2022
CVE Published
via MITRE·12:16 AM
Data Sourced
via MITRE·12:16 AM
Description
Frequently Asked Questions
1
What is CVE-2022-26585?
CVE-2022-26585 refers to a SQL injection vulnerability discovered in Mingsoft MCMS v5.2.7.
2
How severe is CVE-2022-26585?
CVE-2022-26585 has a severity rating of 9.8 (Critical) based on the CVSS scale.
3
What software is affected by CVE-2022-26585?
Mingsoft MCMS v5.2.7 is affected by CVE-2022-26585.
4
How can the SQL injection vulnerability be exploited in Mingsoft MCMS v5.2.7?
The SQL injection vulnerability in Mingsoft MCMS v5.2.7 can be exploited via the /cms/content/list endpoint.
5
Is there a fix available for CVE-2022-26585?
At the moment, there is no available fix for CVE-2022-26585. It is recommended to follow the provided reference for updates and patches.