CVE-2019-14754
08.08.2019, 13:15
Open-School 3.0, and Community Edition 2.3, allows SQL Injection via the index.php?r=students/students/document id parameter.
| Vendor | Product | Version |
|---|---|---|
| open-school | open-school | 2.3 |
| open-school | open-school | 3.0 |
𝑥
= Vulnerable software versions