Critical severity9.8NVD Advisory· Published Nov 10, 2023· Updated Jun 17, 2026
CVE-2023-39796
CVE-2023-39796
Description
SQL injection vulnerability in the miniform module in WBCE CMS v.1.6.0 allows remote unauthenticated attacker to execute arbitrary code via the DB_RECORD_TABLE parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WBCE CMS/WBCE CMSdescription
Patches
Vulnerability mechanics
References
3- pastebin.com/PBw5AvGpnvdThird Party Advisory
- forum.wbce.org/viewtopic.phpnvdIssue Tracking
- github.com/WBCE/WBCE_CMS/releases/tag/1.6.1nvdRelease Notes
News mentions
0No linked articles in our index yet.