Executive brief
SemCms, a content management system used for building e-commerce and corporate websites, contains a security flaw in its link management component. An attacker with basic user access can exploit this to gain unauthorized access to the underlying database. This could lead to the theft of sensitive business information or the modification of website content.
Technical details
A SQL injection vulnerability exists in SemCms versions up to and including 5.0. The flaw is located in the 'ID' parameter within the SEMCMS_Link.php script. An attacker with low-privileged (authenticated) access can submit specially crafted SQL queries through this parameter because the application fails to properly neutralize special elements. Successful exploitation allows the attacker to execute arbitrary SQL commands, potentially leading to full database access or administrative (DBA) permissions. The vulnerability was disclosed with a proof-of-concept demonstrating the injection via the 'type=edit' action.
Affected products
- SemCms SemCms <= 5.0
Timeline
- 2025-07-14: advisory: NVD published the CVE record.