{"api_version":"1","generated_at":"2026-07-23T15:44:44+00:00","cve":"CVE-2021-44653","urls":{"html":"https://cve.report/CVE-2021-44653","api":"https://cve.report/api/cve/CVE-2021-44653.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2021-44653","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2021-44653"},"summary":{"title":"CVE-2021-44653","description":"Online Magazine Management System 1.0 contains a SQL injection authentication bypass vulnerability. The Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to gain access as admin to the application.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2021-12-15 16:15:00","updated_at":"2023-10-18 15:56:00"},"problem_types":["CWE-89"],"metrics":[],"references":[{"url":"https://www.exploit-db.com/exploits/50561","name":"https://www.exploit-db.com/exploits/50561","refsource":"MISC","tags":[],"title":"Online Magazine Management System 1.0 - SQLi Authentication Bypass - PHP webapps Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.nu11secur1ty.com/2021/12/cve-2021-44653.html","name":"https://www.nu11secur1ty.com/2021/12/cve-2021-44653.html","refsource":"MISC","tags":[],"title":"CVE-2021-44653","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-44653","name":"https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-44653","refsource":"MISC","tags":[],"title":"CVE-mitre/CVE-2021-44653 at main · nu11secur1ty/CVE-mitre · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2021-44653","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2021-44653","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2021","cve_id":"44653","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"online_magazine_management_system_project","cpe5":"online_magazine_management_system","cpe6":"1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2021","cve_id":"44653","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oretnom23","cpe5":"online_magazine_management_system","cpe6":"1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2021-44653","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Online Magazine Management System 1.0 contains a SQL injection authentication bypass vulnerability. The Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to gain access as admin to the application."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"refsource":"MISC","name":"https://www.exploit-db.com/exploits/50561","url":"https://www.exploit-db.com/exploits/50561"},{"refsource":"MISC","name":"https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-44653","url":"https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-44653"},{"refsource":"MISC","name":"https://www.nu11secur1ty.com/2021/12/cve-2021-44653.html","url":"https://www.nu11secur1ty.com/2021/12/cve-2021-44653.html"}]}},"nvd":{"publishedDate":"2021-12-15 16:15:00","lastModifiedDate":"2023-10-18 15:56:00","problem_types":["CWE-89"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"},"exploitabilityScore":3.9,"impactScore":5.9},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":7.5},"severity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:oretnom23:online_magazine_management_system:1.0:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2021","CveId":"44653","Ordinal":"222444","Title":"CVE-2021-44653","CVE":"CVE-2021-44653","Year":"2021"},"notes":[]}}}