Security Advisory

CVE-2021-46459

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-01-31 18:38:22
Last updated 2024-08-04 05:10:35
Assigner mitre
State PUBLISHED

Description

Victor CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the component admin/users.php?source=add_user. These vulnerabilities can be exploited through a crafted POST request via the user_name, user_firstname,user_lastname, or user_email parameters.