CVE-2021-44567

Published

Severity

CVSS v3:
9.8 CRITICAL
CVSS v2:
7.5 HIGH

Description

An unauthenticated SQL Injection vulnerability exists in RosarioSIS before 7.6.1 via the votes parameter in ProgramFunctions/PortalPollsNotes.fnc.php.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:rosariosis:rosariosis:*:*:*:*:*:*:*:*n/a7.6.1*

External Links