CVE-2014-2303 | webEdition CMS 6.2.7.0/6.3.3.0/6.3.8.0 we_fs.php order sql injection (ID 126862 / EDB-39206)
A vulnerability, which was classified as critical, was found in webEdition CMS 6.2.7.0/6.3.3.0/6.3.8.0. This affects an unknown part of the file we_fs.php. The manipulation of the argument order leads to sql injection.
This vulnerability is uniquely identified as CVE-2014-2303. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.