← Back to CVE List

CVE-2020-15713

Published: 2020-07-28T14:15Z
Last Modified: 2024-11-21T05:06Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
rConfig 3.9.5 is vulnerable to SQL injection. A remote authenticated attacker could send crafted SQL statements to the devices.php script using the sortBy parameter, which could allow the attacker to view, add, modify, or delete information in the back-end database. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt