CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/User/level_sort.
- https://github.com/chshcms/cscms/issues/32#issue-1209054307
No PoCs found on GitHub currently.