CVE-2020-18106
Published
CVSS v3
9.8
CRITICAL
CVSS v2
7.5
HIGH
Affected
1
PROJECT
Description
The GET parameter "id" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection.
The GET parameter "id" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection.