CVE-2023-34755: SQL Injection
Published Jun 14, 2023
·Updated
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the userid parameter at admin/index.php?mode=user&action=edit.
Affected Software
4 affected components
All of the following
bloofox bloofoxCMS=0.5.2.1
macOS
bloofox bloofoxCMS=0.5.2.1
macOS
Event History
Jun 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-34755.
2
What is the severity of CVE-2023-34755?
The severity of CVE-2023-34755 is critical.
3
What is the affected software of CVE-2023-34755?
The affected software of CVE-2023-34755 is Bloofox CMS version 0.5.2.1.
4
What is the description of CVE-2023-34755?
CVE-2023-34755 is a SQL injection vulnerability in Bloofox CMS version 0.5.2.1, specifically in the userid parameter at admin/index.php?mode=user&action=edit.
5
Are there any references available for CVE-2023-34755?
Yes, you can find more information about CVE-2023-34755 at this reference: https://ndmcyb.hashnode.dev/bloofox-v0521-was-discovered-to-contain-many-sql-injection-vulnerability