CVE-2017-5346: Genixcms
High severity, CVSS 7.2. EPSS: 1.6% chance of exploitation in the next 30 days.
SQL injection vulnerability in inc/lib/Control/Backend/posts.control.php in GeniXCMS 0.0.8 allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter to gxadmin/index.php.
Affected products
- Genixcms Genixcms: version 0.0.8 only
Published 2017-01-12. Last modified 2026-06-17.