Security GQ File Manager 0.2.5 Cross Site Scripting / SQL Injection December 19, 2014 007admin GQ File Manager version 0.2.5 suffers from cross site scripting and remote SQL injection vulnerabilities.