CVE-2021-22847
EUVD-2021-998222.01.2021, 09:15
Hyweb HyCMS-J1's API fail to filter POST request parameters. Remote attackers can inject SQL syntax and execute commands without privilege.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hyweb | hycms-j1 | 𝑥 ≤ 7.4.3 |
𝑥
= Vulnerable software versions