← back
CVE-2022-24265

CVE-2022-24265

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 6.7%
exploitation probability
6.7%top 6% of all CVEs
observed exploitation
nono source reports it
Cuppa CMS v1.0 was discovered to contain a SQL injection vulnerability in /administrator/components/menu/ via the path=component/menu/&menu_filter=3 parameter.
Affected products
n/a · n/a