Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attacker uses the existing application to inject malicious SQL commands into the background database engine for execution, and sends some attack codes as commands or query statements to the interpreter. These malicious data can deceive the interpreter, so as to execute unplanned commands or unauthorized access to data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SEMCMS 安全漏洞
Vulnerability Description
SEMCMS是一套支持多种语言的外贸网站内容管理系统(CMS)。 SEMCMS 3.9版本存在安全漏洞,该漏洞源于对应用程序的输入缺乏安全检查。攻击者利用该漏洞将恶意SQL命令注入到后台数据库引擎中执行,并将一些攻击代码作为命令或查询语句发送给解释器。
CVSS Information
N/A
Vulnerability Type
N/A