CVE-2021-47916 - Simple CMS 2.1 SQL Injection Vulnerability via Users Module

CVE-2021-47916 - Simple CMS 2.1 SQL Injection Vulnerability via Users Module

CVE ID : CVE-2021-47916 Published : Feb. 1, 2026, 1:15 p.m. | 16 minutes ago Description : Simple CMS 2.1 contains a remote SQL injection vulnerability that allows privileged attackers to inject unfiltered SQL commands in the users module. Attackers can exploit unvalidated input parameters in the admin.php file to compromise the database management system and web application. Severity: 8.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Feb. 1, 2026
Affected Product: php
Impact: SQL injection