Vulnerability Details CVE-2022-21643
USOC is an open source CMS with a focus on simplicity. In affected versions USOC allows for SQL injection via register.php. In particular usernames, email addresses, and passwords provided by the user were not sanitized and were used directly to construct a sql statement. Users are advised to upgrade as soon as possible. There are not workarounds for this issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 49.7%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 7.5
Products affected by CVE-2022-21643
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pa1.0bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.0bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.0bfx1
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.0bfx2
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.1bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.2bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.3bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.4bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.5bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.6bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.7bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.7bfx1
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb1.8bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.0bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.0bfx1
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.1bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.2bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.3bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.4bfx0
-
cpe:2.3:a:useful_simple_open-source_cms_project:useful_simple_open-source_cms:pb2.4bfx1