CVE-2022-37223

CVSS v3.1 9.8 (Critical)
98% Progress
EPSS 0.17 % (55th)
0.17% Progress
Affected Products 1
Advisories 1

JFinal CMS 5.1.0 is vulnerable to SQL Injection via /jfinal_cms/system/role/list.

Weaknesses
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2022-08-23 14:15:08
(2 years ago)
Updated Date
2022-08-25 01:04:22
(2 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Jflyfox Jfinal Cms 5.1.0 cpe:2.3:a:jflyfox:jfinal_cms:5.1.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...