CVE-2017-15875

Publication date

2017-12-18 17:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in Password Recovery in GPWeb 8.4.61 allows remote attackers to execute arbitrary SQL commands via the "checkemail" parameter.