CMS Made Simple SQL Injection

Application: CMS Made Simple 1.x
Affected Version: 1.2.2 and prior versions.
Vendor’s URL: http://www.cmsmadesimple.org/
Bug Type: SQL Injection
Risk Level: Critical

Solution:
Update to version 1.2.3.