GHSA-q4hw-62mx-q37w
CRITICALCVE-2015-3933Multiple SQL injection vulnerabilities in inc/lib/User.class.php in MetalGenix GeniXCMS before 0.0.3-patch allow remote attackers to execute arbitrary SQL commands via the (1) email parameter or (2) userid parameter to register.php.
- Affected
- <= 0.0.3
- Fixed in
- not stated
- Weakness
- CWE-89
- Published
- 2022-05-17
- Source
- github