Skip to content

Instantly share code, notes, and snippets.

@Erosion2020
Erosion2020 / gist:5892757e0c6eeb647a218d1c3b323cff
Last active October 14, 2025 10:47
CVE-2025-56316 — MingSoft MCMS: SQL injection leading to privilege escalation and remote code execution (fixed in v6.0.2).
[CVE ID]
CVE-2025-56316
[PRODUCT]
[Gitub ming-soft/MCMS] (https://github.com/ming-soft/MCMS)
[Gitee mingSoft/MCMS](https://gitee.com/mingSoft/MCMS)
[VERSION]
Affected: v5.5.0 — v6.0.1
Fixed in: v6.0.2