A vulnerability was found in DedeBIZ 6.2 and classified as critical. This issue affects some unknown processing of the file /src/admin/makehtml_taglist_action.php. The manipulation of the argument mktime leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-240881 was assigned to this vulnerability.
References
Link Resource
https://github.com/yhy217/dedebiz--vul/issues/2 Exploit Issue Tracking Product
https://vuldb.com/?ctiid.240881 Third Party Advisory
https://vuldb.com/?id.240881 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2023-09-29T15:31:04.242Z

Updated: 2024-06-04T17:28:31.115Z

Reserved: 2023-09-29T06:01:23.276Z


Link: CVE-2023-5268

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-09-29T16:15:10.617

Modified: 2024-06-04T19:18:09.923


Link: CVE-2023-5268

JSON object: View

cve-icon Redhat Information

No data.

CWE