[MAVEN:GHSA-QQC2-PV68-Q72H] Mingsoft MCMS SQL injection vulnerability

Severity High
Affected Packages 1
Fixed Packages 1
CVEs 1

Mingsoft MCMS contains a SQL injection vulnerability relating to the component net.mingsoft.mdiy.action.web.DictAction#list.

Package Affected Version
pkg:maven/net.mingsoft/ms-mcms <= 5.2.5
Package Fixed Version
pkg:maven/net.mingsoft/ms-mcms = 5.2.6
ID
MAVEN:GHSA-QQC2-PV68-Q72H
Severity
high
URL
https://github.com/advisories/GHSA-qqc2-pv68-q72h
Published
2022-01-27T00:01:02
(2 years ago)
Modified
2023-07-12T00:33:35
(14 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/net.mingsoft/ms-mcms net.mingsoft ms-mcms <= 5.2.5
Fixed pkg:maven/net.mingsoft/ms-mcms net.mingsoft ms-mcms = 5.2.6
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...