Vulnerabilities
Vulnerable Software
Os4ed:  >> Opensis  >> 8.0  Security Vulnerabilities
A SQL injection vulnerability exists in version 8.0 of openSIS when MySQL or MariaDB is used as the application database. An attacker can then issue the SQL command through the index.php USERNAME parameter. NOTE: this issue may exist because of an incomplete fix for CVE-2020-6637.
CVSS Score
9.8
EPSS Score
0.09
Published
2021-09-01


Contact Us

Shodan ® - All rights reserved