CVE-2020-28860
14.12.2020, 20:15
OpenAssetDigital Asset Management (DAM) through 12.0.19 does not correctly sanitize user supplied input, incorporating it into its SQL queries, allowing for authenticated blind SQL injection.
Vendor | Product | Version |
---|---|---|
openasset | digital_asset_management | 𝑥 ≤ 12.0.19 |
𝑥
= Vulnerable software versions
References