CVE-2023-34751: SQL Injection
Published Jun 14, 2023
·Updated
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the gid parameter at admin/index.php?mode=user&page=groups&action=edit.
Affected Software
4 affected components
All of the following
bloofox bloofoxCMS=0.5.2.1
macOS
bloofox bloofoxCMS=0.5.2.1
macOS
Event History
Jun 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-34751.
2
What is the severity of CVE-2023-34751?
The severity of CVE-2023-34751 is critical with a score of 9.8.
3
What software is affected by CVE-2023-34751?
Bloofox v0.5.2.1 is affected by CVE-2023-34751.
4
What is the CWE category for CVE-2023-34751?
The CWE category for CVE-2023-34751 is CWE-89 (SQL Injection).
5
Is macOS affected by CVE-2023-34751?
No, macOS is not affected by CVE-2023-34751.
6
How can I fix CVE-2023-34751?
To fix CVE-2023-34751, apply the latest patch or update provided by Bloofox.
7
Where can I find more information about CVE-2023-34751?
You can find more information about CVE-2023-34751 at this link: https://ndmcyb.hashnode.dev/bloofox-v0521-was-discovered-to-contain-many-sql-injection-vulnerability.