NA

CVE-2020-26625

Published: 02/01/2024 Updated: 09/01/2024
CVSS v3 Base Score: 3.8 | Impact Score: 2.5 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

A SQL injection vulnerability exists in Gila CMS 1.15.4 and previous versions which allows a remote malicious user to execute arbitrary web scripts via the 'user_id' parameter after the login portal.

Vulnerable Product Search on Vulmon Subscribe to Product

gilacms gila cms

Exploits

GilaCMS versions 1154 and below suffer from multiple remote SQL injection vulnerabilities ...