PatchSiren

King-products CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH King-products CVE published 2026-06-19

CVE-2017-20274

CVE-2017-20274 is an SQL injection vulnerability in Joomla LMS King Professional 3.2.4.0. Unauthenticated attackers can manipulate database queries by injecting SQL code through the cp_id parameter in GET requests to index.php with specific parameters. This issue has a CVSS score of 8.8 and is considered HIGH severity. Defenders should prioritize patching or mitigating this vulnerability to prevent potent [truncated]