Security Advisory
CVE-2017-14763
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
In the Install Themes page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a theme.