CVE-2026-6881
EUVD-2026-5001928.07.2026, 21:17
A SQL Injection in the Giving Reports functionality in Ellucian Advance Web and Legacy Advance allows an authenticated attacker to extract sensitive information from databases via a crafted SQL query in the class credit field. This issue affects Advance Web: all versions; Legacy Advance: all versions. Ellucian CRM Advance is not impacted.
Awaiting analysis
This vulnerability is currently awaiting analysis.
References