PT-2022-10762 · Unknown · Semcms Shop

黑蚂蚁.阿梁

·

Published

2022-10-28

·

Updated

2025-05-07

·

CVE-2021-38731

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SEMCMS SHOP version 1.1
Description The issue is related to SQL Injection via the Ant Zekou.php file.
Recommendations For SEMCMS SHOP version 1.1, update to a version that fixes the SQL Injection issue in Ant Zekou.php, if available. As a temporary workaround, consider restricting access to the Ant Zekou.php file to minimize the risk of exploitation.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2021-38731

Affected Products

Semcms Shop