Описание
Gila CMS SQL Injection vulnerability
A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the login portal.
Пакеты
Наименование
gilacms/gila
composer
Затронутые версииВерсия исправления
<= 1.15.4
Отсутствует
Связанные уязвимости
CVSS3: 3.8
nvd
около 2 лет назад
A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the login portal.