CVE-2022-28585: SQL Injection
Published May 3, 2022
·Updated
EmpireCMS 7.5 has a SQL injection vulnerability in AdClass.php
Affected Software
1 affected component
Phome Empirecms=7.5
Event History
May 3, 2022
CVE Published
via MITRE·05:02 PM
Data Sourced
via MITRE·05:02 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-28585?
CVE-2022-28585 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2022-28585?
To fix CVE-2022-28585, it is recommended to upgrade EmpireCMS to the latest version or apply relevant patches that address this SQL injection vulnerability.
3
What component of EmpireCMS is affected by CVE-2022-28585?
CVE-2022-28585 specifically affects the AdClass.php file within EmpireCMS version 7.5.
4
What can an attacker do with CVE-2022-28585?
An attacker exploiting CVE-2022-28585 can execute arbitrary SQL queries, potentially leading to data exposure or database manipulation.
5
Is CVE-2022-28585 present in versions other than 7.5 of EmpireCMS?
CVE-2022-28585 is specifically identified in EmpireCMS version 7.5, and other versions may not be affected.