Description
SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute arbitrary code via the. file /DataBackup.php and the operation on the parameter id.
References
www.yuque.com/...en=dU5eQpE4j6zEmVuK&source=doc_collaborator