Medium
CVSS 6.5
Overview
SQL injection vulnerability in htdocs/modules/system/admin.php in XOOPS before 2.5.7 Final allows remote authenticated users to execute arbitrary SQL commands via the selgroups parameter.
SQL injection vulnerability in htdocs/modules/system/admin.php in XOOPS before 2...
SQL injection vulnerability in htdocs/modules/system/admin.php in XOOPS before 2.5.7 Final allows remote authenticated users to execute arbitrary SQL commands via the selgroups parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: