Security Advisory
CVE-2019-14754
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Open-School 3.0, and Community Edition 2.3, allows SQL Injection via the index.php?r=students/students/document id parameter.