wbce_cms is vulnerable to Improper Neutralization of Special Elements used in an SQL Command
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/165377/WBCE-CMS-1.5.1-Admin-Password-Reset.html | Exploit Third Party Advisory VDB Entry |
https://github.com/wbce/wbce_cms/commit/6ca63f0cad5f0cd606fdb69a372f09b7d238f1d7 | Patch Third Party Advisory |
https://huntr.dev/bounties/c330dc0d-220a-4b15-b785-5face4cf6ef7 | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2021-12-09T10:50:10
Updated: 2021-12-21T15:06:54
Reserved: 2021-09-20T00:00:00
Link: CVE-2021-3817
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-12-09T11:15:09.507
Modified: 2022-01-04T16:08:52.470
Link: CVE-2021-3817
JSON object: View
Redhat Information
No data.
CWE