Security Advisory
CVE-2020-20296
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An issue was found in CMSWing project version 1.3.8, Because the rechargeAction function does not check the balance parameter, malicious parameters can execute arbitrary SQL commands.