CVE-2017-5346: Genixcms

High severity, CVSS 7.2. EPSS: 1.6% chance of exploitation in the next 30 days.

SQL injection vulnerability in inc/lib/Control/Backend/posts.control.php in GeniXCMS 0.0.8 allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter to gxadmin/index.php.

Affected products

Published 2017-01-12. Last modified 2026-06-17.