iCMS v7.0.16 was discovered to contain a SQL injection vulnerability via the where parameter at admincp.php.Referenceshttp://icms.comhttp://icmsdev.comhttps://gist.github.com/ChubbyZ/3ad434bd5fc2ab1242dd32500384cfb5