Vulnerabilities (CVE)

Filtered by vendor Wang.market Subscribe
Filtered by product Wangmarket Cms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-26813 1 Wang.market 1 Wangmarket Cms 2024-02-28 N/A 9.8 CRITICAL
SQL injection vulnerability in com.xnx3.wangmarket.plugin.dataDictionary.controller.DataDictionaryPluginController.java in wangmarket CMS 4.10 allows remote attackers to run arbitrary SQL commands via the TableName parameter to /plugin/dataDictionary/tableView.do.