Mingsoft MCMS v5.2.9 contains a SQL injection caused by unsanitized categoryType parameter at /content/list.do, letting attackers execute arbitrary SQL commands, exploit requires crafted input.
id: CVE-2023-50578
info:
name: Mingsoft MCMS 5.2.9 - SQL Injection
author: ritikchaddha
sever
...