{"id":"CVE-2021-3817","details":"wbce_cms is vulnerable to Improper Neutralization of Special Elements used in an SQL Command","modified":"2026-07-08T22:13:52.177757Z","published":"2021-12-09T11:15:09.507Z","references":[{"type":"FIX","url":"https://github.com/wbce/wbce_cms/commit/6ca63f0cad5f0cd606fdb69a372f09b7d238f1d7"},{"type":"FIX","url":"https://huntr.dev/bounties/c330dc0d-220a-4b15-b785-5face4cf6ef7"},{"type":"EVIDENCE","url":"http://packetstormsecurity.com/files/165377/WBCE-CMS-1.5.1-Admin-Password-Reset.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/wbce/wbce_cms","events":[{"introduced":"0"},{"fixed":"254d23069f25b5d2d64b974f5bfafc980d23a73d"},{"fixed":"6ca63f0cad5f0cd606fdb69a372f09b7d238f1d7"}],"database_specific":{"cpe":"cpe:2.3:a:wbce:wbce_cms:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"1.5.2"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["1.5.1","1.5.0","1.4.0","1.3.2","1.3.1","1.3.0","1.2.0","1.1.11","1.1.10","1.1.9","1.1.8","1.1.6","1.1.4","1.1.3","1.1.2","1.1.1","1.1.0","1.0.0","1.0.0-rc.1","1.0.0-beta.3","1.0.0-beta.2","1.0.0-beta.1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-3817.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}