CVE-2023-26813

CVSS V2 None CVSS V3 None
Description
SQL injection vulnerability in com.xnx3.wangmarket.plugin.dataDictionary.controller.DataDictionaryPluginController.java in wangmarket CMS 4.10 allows remote attackers to run arbitrary SQL commands via the TableName parameter to /plugin/dataDictionary/tableView.do.
Overview
  • CVE ID
  • CVE-2023-26813
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Received
  • Published Version
  • 2023-04-28T20:15:13
  • Last Modified Date
  • 2023-04-28T20:15:13
References
Reference URL Reference Tags
https://github.com/xnx3/wangmarket/issues/7
History
Created Old Value New Value Data Type Notes
2023-04-28 21:00:52 Added to TrackCVE