Uncategorized CVE-2019-10707 - April 2, 2019 - admin MKCMS V5.0 has SQL injection via the bplay.php play parameter. Source: NIST CVE-2019-10707