Filtered by vendor Phpkaiyuancms Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-16278 1 Phpkaiyuancms 1 Phpopensourcecms 2024-08-05 N/A
phpkaiyuancms PhpOpenSourceCMS (POSCMS) V3.2.0 allows an unauthenticated user to execute arbitrary SQL commands via the diy/module/member/controllers/Api.php ajax_save_draft function with the dir parameter.