Filtered by vendor Xoops Subscriptions
Total 101 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-11174 1 Xoops 1 Xoops 2024-11-21 N/A
In install/page_dbsettings.php in the Core distribution of XOOPS 2.5.8.1, unfiltered data passed to CREATE and ALTER SQL queries caused SQL Injection in the database settings page, related to use of GBK in CHARACTER SET and COLLATE clauses.