SQL injection vulnerability in login.php in IT!CMS 2.1a and earlier allows remote attackers to execute arbitrary SQL commands via the Username.
- https://www.exploit-db.com/exploits/7686
No PoCs found on GitHub currently.