Junglewise Threat Intelligence

CVE-2017-5519: GeniXCMS SQL injection in Posts.class.php

CVE-2017-5519 · Severity: critical · CVSS 9.8 · Published 2017-01-17

Technologies: Metalgenix Genixcms. Vendors: Metalgenix.

Executive brief

GeniXCMS, a content management system used for building and managing websites, contains a critical security flaw. An attacker can use this vulnerability to gain unauthorized access to the website's database, potentially leading to the theft of sensitive user data, modification of site content, or complete takeover of the application. This issue can be exploited remotely without requiring any login credentials.

Technical details

A SQL injection vulnerability exists in GeniXCMS versions up to and including 0.0.8 within the Posts.class.php component. The flaw is caused by insufficient sanitization of the 'id' parameter, allowing an unauthenticated remote attacker to inject and execute arbitrary SQL commands. By exploiting this vulnerability, an attacker can bypass authentication, extract sensitive information from the database, modify or delete data, and in some configurations, achieve remote code execution on the underlying server. A patch was reportedly addressed in subsequent updates following the disclosure on GitHub.

Affected products

  • GeniXCMS GeniXCMS through 0.0.8

Timeline

  • 2017-01-17: disclosed
  • 2017-01-17: advisory

References

Related threats