CVE-2023-29597: SQL Injection
Published Apr 13, 2023
·Updated
bloofox v0.5.2 was discovered to contain a SQL injection vulnerability via the component /index.php?mode=content&page=pages&action=edit&eid=1.
Affected Software
2 affected components
bloofox bloofox=0.5.2
bloofox bloofoxCMS=0.5.2
Event History
Apr 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-29597?
CVE-2023-29597 refers to a SQL injection vulnerability discovered in bloofox v0.5.2.
2
How severe is CVE-2023-29597?
CVE-2023-29597 has a severity rating of 8.8, which is classified as high.
3
What software version is affected by CVE-2023-29597?
CVE-2023-29597 affects bloofox v0.5.2.
4
Where can I find more information about CVE-2023-29597?
For more information about CVE-2023-29597, you can refer to the following link: [https://github.com/jspring996/PHPcodecms/issues/2](https://github.com/jspring996/PHPcodecms/issues/2)
5
What is the Common Weakness Enumeration (CWE) for CVE-2023-29597?
The Common Weakness Enumeration (CWE) for CVE-2023-29597 is CWE-89, which refers to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection').