CVE-2017-20173

A vulnerability was found in AlexRed contentmap. It has been rated as critical. Affected by this issue is the function Load of the file contentmap.php. The manipulation of the argument contentid leads to sql injection. The name of the patch is dd265d23ff4abac97422835002c6a47f45ae2a66. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-218492.
References
Link Resource
https://github.com/AlexRed/contentmap/commit/dd265d23ff4abac97422835002c6a47f45ae2a66 Patch Third Party Advisory
https://vuldb.com/?ctiid.218492 Permissions Required Third Party Advisory
https://vuldb.com/?id.218492 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:contentmap_project:contentmap:*:*:*:*:*:*:*:*

Information

Published : 2023-01-18 08:15

Updated : 2023-01-25 12:34


NVD link : CVE-2017-20173

Mitre link : CVE-2017-20173


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

contentmap_project

  • contentmap