Aero CMS 0.0.1 - SQL Injection
Vulnerability Description
Aero CMS 0.0.1 contains a SQL injection vulnerability in the author parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, time-based, and UNION query techniques to extract sensitive database information and potentially compromise the system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-50895
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- nu11secur1ty
References
Affected Vendor
MegaTKC
View all reports →