PT-2022-26249 · Unknown · Klik Socialmediawebsite

Grim The Ripper

·

Published

2022-11-22

·

Updated

2025-04-29

·

CVE-2022-42098

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions KLiK SocialMediaWebsite version v1.0.1
Description The issue concerns SQL Injection via the profile.php file.
Recommendations For version v1.0.1, consider restricting access to the profile.php file until a patch is available. Avoid using user-supplied input in SQL queries to minimize the risk of exploitation.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-42098

Affected Products

Klik Socialmediawebsite