2017-07-18 05:00:00
mitre
PUBLISHED
Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_comment/sys_comment.php via $_POST[comment], $_POST[name], $_POST[web], $_POST[email], $_POST[status], $_POST[id], and $_REQUEST[id].