Security Advisory
CVE-2020-8592
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feature).