EmreOvunc/OpenSource-ERP-SQL-Injection

EmreOvunc/OpenSource-ERP-SQL-Injection

Releases0
Stars5
CVE-2019-5893 | OpenSource ERP application has SQL Injection vulnerability.

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

Nelson Open Source ERP v6.3.1 allows SQL Injection via the db/utils/query/data.xml query parameter.