CVE-2018-7579
01.03.2018, 19:29
\application\admin\controller\update_urls.class.php in YzmCMS 3.6 has SQL Injection via the catids array parameter to admin/update_urls/update_category_url.html.
Vendor | Product | Version |
---|---|---|
yzmcms | yzmcms | 3.6 |
𝑥
= Vulnerable software versions