Headline
CVE-2023-34545: CVE-2023-34545
A SQL injection vulnerability in CSZCMS 1.3.0 allows remote attackers to run arbitrary SQL commands via p parameter or the search URL.
[CVE ID]
CVE-2023-34545
[PRODUCT]
CSZCMS - 1.3.0
[VERSION]
CSZCMS - 1.3.0
[PROBLEM TYPE]
SQL Injection
[DESCRIPTION]
SQL injection vulnerability in CSZCMS 1.3.0 allows remote attackers run arbitrary SQL commands via p parameter or the search URL.