ipeak Infosystems ibexwebCMS 3.5 contains an unauthenticated Boolean-based SQL injection caused by unsanitized 'id' parameter in /cms/print.php, letting attackers execute arbitrary SQL commands, exploit requires no authentication.
id: CVE-2021-3018
info:
name: IPeakCMS 3.5 - SQL Injection
author: theamanrawat
severity: cri
...