3.8
CVSSv3

CVE-2020-26624

Published: 02/01/2024 Updated: 09/01/2024
CVSS v3 Base Score: 3.8 | Impact Score: 2.5 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

A SQL injection vulnerability exists in Gila CMS 1.15.4 and previous versions which allows a remote malicious user to execute arbitrary web scripts via the ID parameter after the login portal.

Vulnerable Product Search on Vulmon Subscribe to Product

gilacms gila cms

Exploits

GilaCMS versions 1154 and below suffer from multiple remote SQL injection vulnerabilities ...