Security Advisory

CVE-2021-43701

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-29 15:31:16
Last updated 2024-08-04 04:03:08
Assigner mitre
State PUBLISHED

Description

CSZ CMS 1.2.9 has a Time and Boolean-based Blind SQL Injection vulnerability in the endpoint /admin/export/getcsv/article_db, via the fieldS[] and orderby parameters.