Security Advisory

CVE-2017-5347

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-01-12 06:06:00
Last updated 2024-08-05 14:55:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in inc/mod/newsletter/options.php in GeniXCMS 0.0.8 allows remote authenticated administrators to execute arbitrary SQL commands via the recipient parameter to gxadmin/index.php.