← Back to CVE List

CVE-2020-6117

Published: 2020-09-01T14:15Z
Last Modified: 2024-11-21T05:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bday parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt