CVE-2021-40961

CVE-2021-40961

CMS Made Simple <=2.2.15 is affected by SQL injection in modules/News/function.admin_articlestab.php. The $sortby variable is concatenated with $query1, but it is possible to inject arbitrary SQL language without using the ‘.

Source: CVE-2021-40961

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다