Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2020-5512

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
Gila CMS 1.11.8 allows /admin/media?path=../ Path Traversal.
Attacker Value
Unknown

CVE-2020-5513

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
Gila CMS 1.11.8 allows /cm/delete?t=../ Directory Traversal.
Attacker Value
Unknown

CVE-2020-5515

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
Gila CMS 1.11.8 allows /admin/sql?query= SQL Injection.
Attacker Value
Unknown

CVE-2020-5514

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
Gila CMS 1.11.8 allows Unrestricted Upload of a File with a Dangerous Type via .phar or .phtml to the lzld/thumb?src= URI.