CVE-2022-23358

Publication date

2022-02-16 12:01:24

Family

mitre

State

PUBLISHED

Description

EasyCMS v1.6 allows for SQL injection via ArticlemAction.class.php. In the background, search terms provided by the user were not sanitized and were used directly to construct a SQL statement.