CVE-2022-4282

A vulnerability was found in SpringBootCMS and classified as critical. Affected by this issue is some unknown functionality of the component Template Management. The manipulation leads to injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-214790 is the identifier assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jrecms:springbootcms:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:34

Type Values Removed Values Added
References () https://github.com/Ha0Liu/cveAdd/blob/developer/JreCMS%20template%20injection%20vulnerability/JreCMS%20template%20injection%20vulnerability.md - Exploit, Third Party Advisory () https://github.com/Ha0Liu/cveAdd/blob/developer/JreCMS%20template%20injection%20vulnerability/JreCMS%20template%20injection%20vulnerability.md - Exploit, Third Party Advisory
References () https://vuldb.com/?id.214790 - Third Party Advisory () https://vuldb.com/?id.214790 - Third Party Advisory
Summary
  • (es) Una vulnerabilidad fue encontrada en SpringBootCMS y clasificada como crítica. Una función desconocida del componente Template Management es afectada por esta vulnerabilidad. La manipulación conduce a la inyección. El ataque puede lanzarse de forma remota. La explotación ha sido divulgada al público y puede utilizarse. VDB-214790 es el identificador asignado a esta vulnerabilidad.
CVSS v2 : unknown
v3 : 7.2
v2 : unknown
v3 : 4.7

Information

Published : 2022-12-05 10:15

Updated : 2024-11-21 07:34


NVD link : CVE-2022-4282

Mitre link : CVE-2022-4282

CVE.ORG link : CVE-2022-4282


JSON object : View

Products Affected

jrecms

  • springbootcms
CWE
CWE-707

Improper Neutralization