Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-26625
HistoryJan 02, 2024 - 10:15 p.m.

Sql injection

2024-01-0222:15:00
PRIOn knowledge base
www.prio-n.com
7
sql injection
gila cms
remote execution
user_id parameter

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.7%

A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ‘user_id’ parameter after the login portal.

CPENameOperatorVersion
gila_cmsle1.15.4

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.7%