SQL Injection Vulnerability in Exment and Laravel Admin by Exceed One
CVE-2022-37333
8.8HIGH
What is CVE-2022-37333?
The SQL injection vulnerability in Exment and Laravel Admin allows remote authenticated attackers to execute arbitrary SQL commands. This could potentially lead to unauthorized access and manipulation of the database, posing significant risks to the integrity and confidentiality of the data. It is crucial for users to update to the latest versions and implement security measures to mitigate such vulnerabilities.
Affected Version(s)
Exment (PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7) exceedone/exment v4.4.2 and earlier and exceedone/laravel-admin v2.2.2 and earlier