First published: Thu Dec 21 2023(Updated: )
S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_bbsauth parameter at /admin/ajax.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simasy CMS | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-51049 is classified as a critical vulnerability due to its potential for SQL injection attacks.
To fix CVE-2023-51049, update S-CMS to the latest version that addresses this SQL injection vulnerability.
CVE-2023-51049 affects S-CMS version 5.0.
A SQL injection vulnerability, as in CVE-2023-51049, allows an attacker to manipulate backend SQL queries through unsanitized input.
To mitigate risks from CVE-2023-51049, ensure proper input validation and use prepared statements in database queries.