SQL Injection Vulnerability in Mingsoft MCMS from Mingsoft
CVE-2023-50578
9.8CRITICAL
What is CVE-2023-50578?
Mingsoft MCMS version 5.2.9 is susceptible to a SQL injection vulnerability through the categoryType parameter at the /content/list.do endpoint. This flaw allows an attacker to execute arbitrary SQL code, potentially compromising the application's database. Organizations using this version should promptly assess their systems and apply necessary mitigations to safeguard sensitive data.
