CVE-2023-50162: SQL Injection
Published Jan 8, 2024
·Updated
SQL injection vulnerability in EmpireCMS v7.5, allows remote attackers to execute arbitrary code and obtain sensitive information via the DoExecSql function.
Affected Software
1 affected component
Phome Empirecms=7.5
Event History
Jan 8, 2024
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-50162?
CVE-2023-50162 has a critical severity rating due to its potential for remote code execution.
2
How do I fix CVE-2023-50162?
To fix CVE-2023-50162, upgrade EmpireCMS to version 7.6 or apply the necessary patches provided by the vendor.
3
What type of vulnerability is CVE-2023-50162?
CVE-2023-50162 is classified as an SQL injection vulnerability.
4
Who is affected by CVE-2023-50162?
Anyone using EmpireCMS version 7.5 is affected by CVE-2023-50162.
5
What can attackers do with CVE-2023-50162?
Attackers exploiting CVE-2023-50162 can execute arbitrary code and access sensitive information.