First published: Sat Dec 30 2023(Updated: )
Mingsoft MCMS v5.2.9 was discovered to contain a SQL injection vulnerability via the categoryType parameter at /content/list.do.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
maven/net.mingsoft:ms-mcms | <=5.2.9 | |
Mingsoft MCMS | =5.2.9 | |
=5.2.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50578 has a high severity due to its potential for unauthorized database access through SQL injection.
To fix CVE-2023-50578, update Mingsoft MCMS to a version beyond 5.2.9 or implement input validation to prevent SQL injection.
CVE-2023-50578 affects Mingsoft MCMS version 5.2.9.
CVE-2023-50578 is classified as a SQL injection vulnerability.
Yes, CVE-2023-50578 can potentially expose sensitive data if exploited by an attacker.