CVE-2020-9398
25.02.2020, 21:15
ISPConfig before 3.1.15p3, when the undocumented reverse_proxy_panel_allowed=sites option is manually enabled, allows SQL Injection.
Vendor | Product | Version |
---|---|---|
ispconfig | ispconfig | 𝑥 < 3.1.15 |
ispconfig | ispconfig | 3.1.15 |
ispconfig | ispconfig | 3.1.15:p1 |
ispconfig | ispconfig | 3.1.15:p2 |
𝑥
= Vulnerable software versions