Beveiligingsadvies
CVE-2018-9847
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
In Gxlcms QY v1.0.0713, the update function in Lib\Lib\Action\Admin\TplAction.class.php allows remote attackers to execute arbitrary PHP code by placing this code into a template.