Critical
CVSS 10.0
Overview
SQL injection vulnerability in author/edit.php in OpenConf 4.x before 4.12 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
SQL injection vulnerability in author/edit.php in OpenConf 4.x before 4.12 allow...
SQL injection vulnerability in author/edit.php in OpenConf 4.x before 4.12 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
This vulnerability is rated 🔴 CRITICAL.
Recommended actions: