PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Dec 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phpjabbers
Phpjabbers simple Cms |
|
| Vendors & Products |
Phpjabbers
Phpjabbers simple Cms |
Wed, 17 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information. | |
| Title | PHPJabbers Simple CMS 5.0 SQL Injection via Column Parameter | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-12-17T22:44:55.873Z
Updated: 2025-12-17T22:44:55.873Z
Reserved: 2025-12-16T19:22:09.996Z
Link: CVE-2023-53926
No data.
Status : Received
Published: 2025-12-17T23:15:51.873
Modified: 2025-12-17T23:15:51.873
Link: CVE-2023-53926
No data.