CVE-2011-5235: Mnogosearch

High severity, CVSS 7.5. EPSS: 1.9% chance of exploitation in the next 30 days.

SQL injection vulnerability in mnoGoSearch before 3.3.12 allows remote attackers to execute arbitrary SQL commands via the hostname in a hypertext link.

Affected products

  • Mnogosearch Mnogosearch: up to and including 3.3.11; version 3.1.19 only; version 3.1.20 only; version 3.2.10 only; version 3.2.13 only; version 3.2.14 only; …

Published 2012-10-25. Last modified 2026-06-16.