CVE-2013-4952: Elemata CMS

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

SQL injection vulnerability in functions/global.php in Elemata CMS RC 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Affected products

  • Elemata Elemata CMS: version 3.0 only

Published 2013-07-29. Last modified 2026-06-16.