CVE-2022-34955: SQL Injection
Published Aug 2, 2022
·Updated
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the pagesize parameter at loaddatafortopusers.php.
Affected Software
1 affected component
Pligg Pligg CMS=2.0.2
Event History
Aug 2, 2022
CVE Published
via MITRE·02:54 AM
Data Sourced
via MITRE·02:54 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Pligg CMS vulnerability?
The vulnerability ID for this Pligg CMS vulnerability is CVE-2022-34955.
2
What is the severity of CVE-2022-34955?
The severity of CVE-2022-34955 is critical with a CVSS score of 9.8.
3
How does CVE-2022-34955 affect Pligg CMS?
CVE-2022-34955 affects Pligg CMS version 2.0.2.
4
What is the impact of CVE-2022-34955?
The impact of CVE-2022-34955 is a time-based SQL injection vulnerability, which can allow an attacker to execute arbitrary SQL queries and potentially gain unauthorized access to the database.
5
Is there a fix available for CVE-2022-34955?
Yes, a fix for CVE-2022-34955 is available. It is recommended to update to the latest version of Pligg CMS to mitigate the vulnerability.