Vulnerabilities > Hamayeshnegar

DATE CVE VULNERABILITY TITLE RISK
2018-02-22 CVE-2017-18194 SQL Injection vulnerability in Hamayeshnegar CMS
SQL injection vulnerability in users/signup.php in the "signup" component in HamayeshNegar CMS allows a remote attacker to execute arbitrary SQL commands via the "utype" parameter.
network
low complexity
hamayeshnegar CWE-89
critical
9.8