relightsec/BaiCloud

relightsec/BaiCloud

Releases0
BaiCloud-cms 2.5.7 /user/ztconfig.php SQL injection Vulnerability

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH6.5 MEDIUM

BaiCloud-cms v2.5.7 was discovered to contain multiple SQL injection vulnerabilities via the tongji and baidu_map parameters in /user/ztconfig.php.