CVE Feed

    Dashboard / CVE / CVE-2023-48863

    CVE-2023-48863

    SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attacker uses the existing application to inject malicious SQL commands into the background database engine for execution, and sends some attack codes as commands or query statements to the interpreter. These malicious data can deceive the interpreter, so as to execute unplanned commands or unauthorized access to data.

    Published:Dec 4, 2023
    Last Modified:Jun 3, 2025
    EPS:Dec 4, 2023
    EPSS Score:0.00244
    CVSS Score:7.5

    Affected Products

    Vendor
    Sem-cms
    Product
    Semcms

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High