Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries through unvalidated parameters. Attackers can inject malicious SQL code in the 'id' parameter of the admin index page to execute time-based blind SQL injection attacks.
Metrics
Affected Vendors & Products
References
History
Mon, 22 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries through unvalidated parameters. Attackers can inject malicious SQL code in the 'id' parameter of the admin index page to execute time-based blind SQL injection attacks. | |
| Title | Atom CMS 2.0 Unauthenticated SQL Injection via Admin Index Page | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-22T22:04:30.882Z
Reserved: 2025-12-20T16:31:20.899Z
Link: CVE-2023-53975
No data.
Status : Received
Published: 2025-12-22T22:16:02.837
Modified: 2025-12-22T22:16:02.837
Link: CVE-2023-53975
No data.
OpenCVE Enrichment
No data.