CVE-2022-46101

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
22/12/2022
Last modified:
15/04/2025

Description

AyaCMS v3.1.2 was found to have a code flaw in the ust_sql.inc.php file, which allows attackers to cause command execution by inserting malicious code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ayacms_project:ayacms:3.1.2:*:*:*:*:*:*:*