PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpjabbers
Phpjabbers simple Cms |
|
| Vendors & Products |
Phpjabbers
Phpjabbers simple Cms |
Wed, 17 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information. | |
| Title | PHPJabbers Simple CMS 5.0 SQL Injection via Column Parameter | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-12-17T22:44:55.873Z
Updated: 2025-12-18T15:02:39.849Z
Reserved: 2025-12-16T19:22:09.996Z
Link: CVE-2023-53926
Updated: 2025-12-18T14:48:52.517Z
Status : Awaiting Analysis
Published: 2025-12-17T23:15:51.873
Modified: 2025-12-18T15:07:42.550
Link: CVE-2023-53926
No data.