Loading...
Loading...
SQL injection vulnerability in ImageCMS before 4.2 allows remote authenticated administrators to execute arbitrary SQL commands via the q parameter to admin/admin_search/. NOTE: this can be leveraged using CSRF to allow remote unauthenticated attackers to execute arbitrary SQL commands.
March 11, 2014
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-6290
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.