CRITICAL
controllers/member/Api.php in dayrui FineCms 5.2.0 has SQL Injection: a request with s=member,c=api,m=checktitle, and the parameter 'module' with a SQL statement, lacks effective filtering
Published Feb 12, 2018
9.8
CRITICALCVSS 3.0
EPSS 2.50%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.