CVE-2017-5345: Metalgenix Genixcms

High severity, CVSS 8.8. EPSS: 1.6% chance of exploitation in the next 30 days.

SQL injection vulnerability in inc/lib/Control/Ajax/tags-ajax.control.php in GeniXCMS 0.0.8 allows remote authenticated editors to execute arbitrary SQL commands via the term parameter to the default URI.

Affected products

Published 2017-01-12. Last modified 2026-06-17.