Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1718 | SQL Injection in ImpressCMS 1.4.3 and earlier allows remote attackers to inject into the code in unintended way, this allows an attacker to read and modify the sensitive information from the database used by the application. If misconfigured, an attacker can even upload a malicious web shell to compromise the entire system. |
Github GHSA |
GHSA-f99r-jjgr-f373 | SQL injection in ImpressCMS |
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:18:39.144Z
Reserved: 2022-03-14T00:00:00.000Z
Link: CVE-2022-26986
No data.
Status : Modified
Published: 2022-04-05T15:15:08.597
Modified: 2026-06-17T04:36:15.937
Link: CVE-2022-26986
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD
Github GHSA