Loading...
Loading...
SQL injection vulnerability in dg-admin/index.php in doorGets CMS 5.2 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the _position_down_id parameter. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary SQL commands.
February 11, 2014
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2014-1459
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.