CVE-2022-43256: SQL Injection
Published Nov 16, 2022
·Updated
SeaCms before v12.6 was discovered to contain a SQL injection vulnerability via the component /js/player/dmplayer/dmku/index.php.
Affected Software
1 affected component
SEACMS SEACMS<12.6
Event History
Nov 16, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-43256?
CVE-2022-43256 is a SQL injection vulnerability found in SeaCms before version 12.6.
2
How does the SQL injection vulnerability occur in SeaCms?
The SQL injection vulnerability in SeaCms occurs through the component /js/player/dmplayer/dmku/index.php.
3
What is the severity of CVE-2022-43256?
CVE-2022-43256 has a severity rating of 9.8 (critical).
4
How can I fix CVE-2022-43256 vulnerability?
To fix the CVE-2022-43256 vulnerability, update SeaCms to version 12.6 or newer.
5
Where can I find more information about CVE-2022-43256?
You can find more information about CVE-2022-43256 at the following reference: https://github.com/seacms-com/seacms/issues/23