NA

CVE-2020-26623

Published: 02/01/2024 Updated: 09/01/2024
CVSS v3 Base Score: 3.8 | Impact Score: 2.5 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

SQL Injection vulnerability discovered in Gila CMS 1.15.4 and previous versions allows a remote malicious user to execute arbitrary web scripts via the Area parameter under the Administration>Widget tab after the login portal.

Vulnerable Product Search on Vulmon Subscribe to Product

gilacms gila cms

Exploits

GilaCMS versions 1154 and below suffer from multiple remote SQL injection vulnerabilities ...