CVE-2007-4918
Gelatocms - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in classes/gelato.class.php in Gelato allows remote attackers to execute arbitrary SQL commands via the post parameter to index.php.
Exploits (1)
References (8)
Scores
EPSS
0.0157
EPSS Percentile
81.6%
Details
CWE
CWE-89
Status
published
Products (3)
gelatocms/gelatocms
_nil_
gelatocms/gelatocms
0.90
gelatocms/gelatocms
0.95
Published
Sep 17, 2007
Tracked Since
Feb 18, 2026