Description
A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the login portal.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0255 | A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the login portal. |
Github GHSA |
GHSA-4vf6-2rmx-fgqx | Gila CMS SQL Injection vulnerability |
References
History
Tue, 17 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-17T14:50:32.788Z
Reserved: 2020-10-07T00:00:00.000Z
Link: CVE-2020-26624
Updated: 2024-08-04T15:56:04.828Z
Status : Modified
Published: 2024-01-02T22:15:07.837
Modified: 2025-06-17T15:15:34.790
Link: CVE-2020-26624
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA