packetstormsecurity.com
http://packetstormsecurity.com/files/158114/Gila-CMS-1.11.8-SQL-Injection.html CVE-2020-5515
HIGH
Gila CMS 1.11.8 - 'query' SQL Injection
Record summary
CVE-2020-5515 has a selected CVSS score of 7.2 (high); EIP currently links 1 catalogued exploit.
Description
Gila CMS 1.11.8 allows /admin/sql?query= SQL Injection.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGila CMS 1.11.8 - 'query' SQL InjectionExploitDB exploitby BillyV4Not analyzed1 file
References
4packetstormsecurity.com
http://packetstormsecurity.com/files/158140/Gila-CMS-1.1.18.1-SQL-Injection-Shell-Upload.html infosecdb.wordpress.com
https://infosecdb.wordpress.com/2020/01/05/gilacms-1-11-8-admin-sqlquery-sql-injection nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-5515