SQL Injection vulnerability in CMS Made Simple through 2.2.15 allows remote attackers to execute arbitrary commands via the m1_sortby parameter to modules/News/function.admin_articlestab.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-05-08T00:00:00

Updated: 2024-08-03T21:55:12.243Z

Reserved: 2021-03-22T00:00:00

Link: CVE-2021-28999

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-05-08T14:15:10.770

Modified: 2023-05-15T16:07:22.790

Link: CVE-2021-28999

cve-icon Redhat

No data.