Vulnerabilities > Whmcs > Group PAY

DATE CVE VULNERABILITY TITLE RISK
2013-05-13 CVE-2013-3536 SQL Injection vulnerability in Whmcs Group PAY
SQL injection vulnerability in the gp_LoadUserFromHash function in functions_hash.php in the Group Pay module 1.5 and earlier for WHMCS allows remote attackers to execute arbitrary SQL commands via the hash parameter.
network
low complexity
whmcs CWE-89
7.5