CVE-2017-5345: Metalgenix Genixcms
High severity, CVSS 8.8. EPSS: 1.6% chance of exploitation in the next 30 days.
SQL injection vulnerability in inc/lib/Control/Ajax/tags-ajax.control.php in GeniXCMS 0.0.8 allows remote authenticated editors to execute arbitrary SQL commands via the term parameter to the default URI.
Affected products
- Metalgenix Genixcms: version 0.0.8 only
Published 2017-01-12. Last modified 2026-06-17.