CVE-2020-23262: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
An issue was discovered in ming-soft MCMS v5.0, where a malicious user can exploit SQL injection without logging in through /mcms/view.do.
References
Detect and mitigate CVE-2020-23262 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →