Multiple SQL injection vulnerabilities in MetalGenix GeniXCMS before 0.0.2 allow remote attackers to execute arbitrary SQL commands via the (1) page parameter to index.php or (2) username parameter to gxadmin/login.php.
| Software | From | Fixed in |
|---|---|---|
| genixcms / genixcms | - | 0.0.1.x |