CVE-2020-21176
01.02.2021, 18:15
SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitrary SQL commands via the step parameter.
Vendor | Product | Version |
---|---|---|
thinkjs | thinkjs | 3.2.10 |
𝑥
= Vulnerable software versions