AI Score
Confidence
High
EPSS
Percentile
54.0%
SQL Injection in Tribalsystems Zenario CMS 8.8.52729 allows remote attackers to access the database or delete the plugin. This is accomplished via the ID input field of ajax.php in the Pugin library - delete module.
ID
Pugin library - delete
github.com/TribalSystems/Zenario/releases/tag/8.8.53370