SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and previous versions allows remote malicious users to execute arbitrary SQL commands via the kwrd parameter in a kwl action to the default URI.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
realm project realm cms |