Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Longlonglongname

#13553of 53,625
19.6Total CVSS
Vulnerabilities · 2
Critical
2
PT-2022-8881
9.8
2022-01-11
Cscms · Cscms · CVE-2020-28102
**Name of the Vulnerable Software and Affected Versions** cscms version 4.1 **Description** The issue allows for SQL injection via the `js del` function. This enables potential attackers to inject malicious SQL code, which could lead to unauthorized access or manipulation of database content. **Recommendations** For cscms version 4.1, consider disabling the `js del` function as a temporary workaround until a patch is available. Restrict access to sensitive database operations to minimize the risk of exploitation.
PT-2022-8882
9.8
2022-01-11
Cscms · Cscms · CVE-2020-28103
**Name of the Vulnerable Software and Affected Versions** cscms version 4.1 **Description** The issue allows for SQL injection via the `page del` function. This could potentially lead to unauthorized access or manipulation of database content. **Recommendations** For cscms version 4.1, consider disabling the `page del` function until a patch is available to prevent potential SQL injection attacks.