Vulnerabilities (CVE)

Filtered by vendor King-products Subscribe
Filtered by product Learning Management System King
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-20274 1 King-products 1 Learning Management System King 2026-08-19 N/A 8.2 HIGH
Joomla LMS King Professional 3.2.4.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the cp_id parameter. Attackers can send GET requests to index.php with the option=com_lmsking, view=lmsking, layout=learningpath, and task=learningPath parameters to extract sensitive database information.