First published: Wed Nov 20 2024(Updated: )
SemCms v4.8 was discovered to contain a SQL injection vulnerability. This allows an attacker to execute arbitrary code via the ldgid parameter in the SEMCMS_SeoAndTag.php component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MagpieRSS | ||
sem-cms | =4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-52725 is classified as a critical severity vulnerability due to its ability to allow arbitrary code execution.
To fix CVE-2024-52725, update to the latest version of SemCms that addresses this SQL injection vulnerability.
CVE-2024-52725 affects the SEMCMS_SeoAndTag.php component in SemCms v4.8.
CVE-2024-52725 allows an attacker to execute arbitrary code via a crafted ldgid parameter.
SemCms v4.8 is known to be vulnerable to CVE-2024-52725.