Gen Sato of Mitsui Bussan Secure Directions, discovered an Authenticated (admin+) SQL Injection issue, which could result in an arbitrary SQL command executed if a user accesses a specially crafted URL while logged in.
Gen Sato of Mitsui Bussan Secure Directions
No
2020-10-21 (about 2 years ago)
2020-10-21 (about 2 years ago)
2020-10-23 (about 2 years ago)