PacerCMS 0.6的多个SQL注入漏洞会允许远程授权用户通过(1) siteadmin/article-edit.php,(2) submitted-edit.php,(3) page-edit.php, (4) section-edit.php, (5) staff-edit.php, (6) siteadmin/目录下的staff-access.php的id参数来执行任意SQL命令。
PacerCMS 0.6的多个SQL注入漏洞会允许远程授权用户通过(1) siteadmin/article-edit.php,(2) submitted-edit.php,(3) page-edit.php, (4) section-edit.php, (5) staff-edit.php, (6) siteadmin/目录下的staff-access.php的id参数来执行任意SQL命令。