CVE-2021-33925

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT

Description

SQL Injection vulnerability in nitinparashar30 cms-corephp through commit bdabe52ef282846823bda102728a35506d0ec8f9 (May 19, 2021) allows unauthenticated attackers to gain escilated privledges via a crafted login.

Built in core php content management system in-built user authentication system with user registration. A fully functional Admin-Panel where user can create update or delete web post by using UI.
GitHubGitHub