CVE-2014-10023: Topicsviewer

High severity, CVSS 7.5. EPSS: 3.3% chance of exploitation in the next 30 days.

Multiple SQL injection vulnerabilities in TopicsViewer 3.0 Beta 1 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) edit_block.php, (2) edit_cat.php, (3) edit_note.php, or (4) rmv_topic.php in admincp/.

Affected products

Published 2015-01-13. Last modified 2026-06-17.