DDSN Interactive cm3 Acora CMS
cpe:2.3:a:ddsn:cm3_acora_content_management_system:*:*:*:*:*:*:*
- 10.1.1
A time-based blind SQL injection vulnerability has been identified in DDSN Interactive cm3 Acora CMS version 10.1.1. This vulnerability arises from inadequate input sanitization and validation in the 'table' parameter, allowing attackers to inject malicious SQL queries. The exploitation of this vulnerability could lead to unauthorized access, data manipulation, or exposure of sensitive information, significantly compromising the application's integrity and confidentiality.
Exploitation of this vulnerability allows for time-based blind SQL injection, where an attacker can execute arbitrary SQL commands that could manipulate the database or extract sensitive information.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.