First published: Mon Jul 31 2023(Updated: )
SEMCMS v1.5 was discovered to contain a SQL injection vulnerability via the id parameter at /Ant_Suxin.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sem-cms | =1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37647 is a SQL injection vulnerability in SEMCMS v1.5.
CVE-2023-37647 has a severity rating of 9.8 (Critical).
SEMCMS v1.5 is affected by CVE-2023-37647.
To fix CVE-2023-37647, apply the latest patch or upgrade to a version that is not affected by this vulnerability.
You can find more information about CVE-2023-37647 at the following references: [http://semcms.com](http://semcms.com), [https://www.sem-cms.cn/](https://www.sem-cms.cn/), [https://gitee.com/ants12/sem-cms_-shop_210918_v1.5-sql-injection-exists-s/tree/master/](https://gitee.com/ants12/sem-cms_-shop_210918_v1.5-sql-injection-exists-s/tree/master/).