SQL Injection Vulnerability in Yeager CMS 1.2.1: Arbitrary SQL Command Execution in yeager/y.php/tab_USERLIST

SQL Injection Vulnerability in Yeager CMS 1.2.1: Arbitrary SQL Command Execution in yeager/y.php/tab_USERLIST

CVE-2015-7569 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQL injection vulnerability in "yeager/y.php/tab_USERLIST" in Yeager CMS 1.2.1 allows local users to execute arbitrary SQL commands via the "pagedir_orderby" parameter.

Learn more about our Cms Pen Testing.