← Back to CVE List
CVE-2021-28295
Online Ordering System 1.0 is vulnerable to unauthenticated SQL injection through /onlineordering/GPST/admin/design.php, which may lead to database information disclosure.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt