CVE-2026-0567: code-projects Content Management System pages.php sql injection
A vulnerability was detected in code-projects Content Management System 1.0. The affected element is an unknown function of the file /pages.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0567?
CVE-2026-0567 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2026-0567?
To fix CVE-2026-0567, validate and sanitize user input and implement prepared statements in your SQL queries.
Can CVE-2026-0567 be exploited remotely?
Yes, CVE-2026-0567 can be exploited remotely, allowing attackers to carry out SQL injection attacks from outside the network.
Which software versions are affected by CVE-2026-0567?
CVE-2026-0567 affects version 1.0 of the code-projects Content Management System.
What are the implications of exploiting CVE-2026-0567?
Exploiting CVE-2026-0567 can lead to unauthorized access to the database, data leakage, or data manipulation.