Scuola Attrezzatura Monitoring System 1.0 consente di iniezione SQL tramite la schermata di login, relativi a includere / user.vb. |
http://packetstormsecurity.com/files/149996/School-Equipment-Monitoring-System-1.0-SQL-Injection.html https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-18806 |
Vulnerabilità: CVE-2018-18806
