Security Advisory

CVE-2020-1937

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-02-24 20:57:52
Last updated 2024-08-04 06:53:59
Assigner apache
State PUBLISHED

Description

Kylin has some restful apis which will concatenate SQLs with the user input string, a user is likely to be able to run malicious database queries.