13enforme CMS 1.0 has SQL Injection via the ‘content.php’ id parameter.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-23979
Reference (s):
- https://packetstormsecurity.com/files/157094/13enforme-CMS-SQL-Injection-Cross-Site-Scripting.html