SQL Injection Vulnerability in Mingsoft MCMS by Mingsoft
CVE-2022-36272
9.8CRITICAL
What is CVE-2022-36272?
Mingsoft MCMS version 5.2.8 has been identified with a SQL injection vulnerability that allows attackers to manipulate database queries through the 'fieldName' parameter in the /mdiy/page/verify URI. This flaw can lead to unauthorized data access and potential data manipulation, highlighting the importance of securing user input within web applications.
