Description
Mingsoft MCMS 5.2.8 was discovered to contain a SQL injection vulnerability in /mdiy/page/verify URI via fieldName parameter.
Remediation
References
https://github.com/ming-soft/MCMS/issues/97
Related Vulnerabilities
CVE-2022-36889 Vulnerability in maven package org.jenkins-ci.plugins:deployer-framework
CVE-2021-21412 Vulnerability in npm package @thi.ng/egf
CVE-2018-20835 Vulnerability in maven package org.webjars.npm:tar-fs
CVE-2022-41954 Vulnerability in maven package net.sf.mpxj:mpxj
CVE-2022-45135 Vulnerability in maven package org.apache.cocoon:cocoon-databases-impl