CVE-2017-9848
SQL injection vulnerability in C_InfoService.asmx in WebServices in Easysite 7.0 could allow remote attackers to execute arbitrary SQL commands via an XML document containing a crafted ArticleIDs element within a GetArticleHitsArray element.
Date published : 2017-06-24
http://www.huilan.com/zkhl/resource/cms/2015/09/2015091814311792443.pdf