Metrics
Affected Vendors & Products
Wed, 10 Sep 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Chancms
Chancms chancms |
|
| CPEs | cpe:2.3:a:chancms:chancms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Chancms
Chancms chancms |
Tue, 09 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 08 Sep 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in ChanCMS up to 3.3.1. Impacted is an unknown function of the file /search/. The manipulation with the input '%20or%201=1%20%23/words.html leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. | |
| Title | ChanCMS search sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-08T22:32:09.780Z
Updated: 2025-09-09T13:30:00.587Z
Reserved: 2025-09-08T14:15:33.950Z
Link: CVE-2025-10110
Updated: 2025-09-09T13:15:06.261Z
Status : Analyzed
Published: 2025-09-08T23:15:34.600
Modified: 2025-09-10T16:41:18.860
Link: CVE-2025-10110
No data.