CRITICAL
Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_comment/sys_comment.php via $_POST['comment'], $_POST['name'], $_POST['web'], $_POST['email'], $_POST['status'], $_POST['id'], and $_REQUEST['id']
Published Jul 18, 2017
9.8
CRITICALCVSS 3.0
EPSS 0.99%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.