Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Bcvgh

#29718de 53,634
8.8CVSS total
Vulnerabilidades · 1
PT-2023-24382
8.8
2023-06-09
Fuel Cms · Fuel Cms · CVE-2023-33557
**Name of the Vulnerable Software and Affected Versions** Fuel CMS version 1.5.2 **Description** The issue is related to a SQL injection vulnerability. It can be exploited via the `id` parameter at the "/controllers/Blocks.php" endpoint. **Recommendations** For Fuel CMS version 1.5.2, consider restricting access to the "/controllers/Blocks.php" endpoint until a patch is available. As a temporary workaround, avoid using the `id` parameter in this endpoint to minimize the risk of exploitation.