Security Advisory

CVE-2017-5346

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-01-12 06:06:00
Last updated 2024-08-05 14:55:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in inc/lib/Control/Backend/posts.control.php in GeniXCMS 0.0.8 allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter to gxadmin/index.php.