CVE-2023-5258

Source
https://cve.org/CVERecord?id=CVE-2023-5258
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-5258.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-5258
Published
2023-09-29T11:31:04.769Z
Modified
2026-07-15T01:49:19.956569319Z
Severity
  • 6.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L CVSS Calculator
Summary
OpenRapid RapidCMS addgood.php sql injection
Details

A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the file /resource/addgood.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-240867.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/5xxx/CVE-2023-5258.json",
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-89"
    ]
}
References

Affected packages

Git / github.com/openrapid/rapidcms

Affected ranges

Type
GIT
Repo
https://github.com/openrapid/rapidcms
Events
Database specific
{
    "cpe": "cpe:2.3:a:openrapid:rapidcms:1.3.1:*:*:*:*:*:*:*",
    "source": [
        "AFFECTED_FIELD",
        "CPE_STRING"
    ],
    "extracted_events": [
        {
            "introduced": "1.3.1"
        },
        {
            "last_affected": "1.3.1"
        }
    ]
}

Affected versions

1.*
1.3.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-5258.json"