CVE-2023-34752
Bloofox CMS SQL Injection in Settings.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A SQL injection vulnerability exists in bloofoxcms, a web content management system. This flaw, affecting the `lid` parameter in the language settings, could allow unauthenticated attackers to execute arbitrary SQL commands, potentially leading to unauthorized database access, data corruption, or system compromise if t