Beveiligingsadvies

CVE-2026-6881

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-28 20:03:11
Laatst bijgewerkt 2026-07-29 13:43:54
Toegewezen door SRA
CVSS-score 9.4
Status PUBLISHED

Beschrijving

A SQL Injection in the Giving Reports functionality in Ellucian Advance Web and Legacy Advance allows an authenticated attacker to extract sensitive information from databases via a crafted SQL query in the class credit field. This issue affects Advance Web: all versions; Legacy Advance: all versions. Ellucian CRM Advance is not impacted.