{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/dedecms-53_1_utf8/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-76783"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["DeDeCMS 53_1_UTF8"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":[],"content_html":"\u003cp\u003eA remote SQL injection vulnerability (CVE-2026-76783) has been identified in DeDeCMS version 53_1_UTF8. The flaw resides within the /plus/advancedsearch.php file, where the 'sql' argument is insufficiently sanitized before being processed in a backend database query. This vulnerability allows remote, unauthenticated attackers to inject and execute arbitrary SQL commands against the underlying database. The vulnerability has been disclosed publicly, and functional exploit code is available, increasing the risk of exploitation by malicious actors targeting this specific version of the CMS.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows remote attackers to execute arbitrary SQL queries, which may result in unauthorized data exfiltration, database manipulation, or complete compromise of the application data. The vulnerability is rated with a CVSS v3.1 score of 7.3, reflecting its potential for impact on Confidentiality, Integrity, and Availability.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImmediately audit web server logs for requests targeting '/plus/advancedsearch.php' containing suspicious SQL syntax within the 'sql' parameter.\u003c/li\u003e\n\u003cli\u003eReview the application code for the vulnerable '/plus/advancedsearch.php' script and implement parameterized queries to neutralize the SQL injection vector.\u003c/li\u003e\n\u003cli\u003eDeploy the Sigma rule provided in this brief to monitor for exploitation attempts against this endpoint.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-20T03:09:15Z","date_published":"2026-08-20T03:09:15Z","id":"https://feed.craftedsignal.io/briefs/2026-08-dedecms-sqli/","summary":"DeDeCMS version 53_1_UTF8 is vulnerable to a remote SQL injection attack via the 'sql' argument in /plus/advancedsearch.php, for which public exploit code is available.","title":"Remote SQL Injection Vulnerability in DeDeCMS","url":"https://feed.craftedsignal.io/briefs/2026-08-dedecms-sqli/"}],"language":"en","title":"CraftedSignal Threat Feed - DeDeCMS 53_1_UTF8","version":"https://jsonfeed.org/version/1.1"}