MCMS 6.1.1 through 6.2.1 has a SQL injection vulnerability in the custom model/form import feature.
Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.