CVE-2019-11619

Publication date

2019-04-30 19:40:54

Family

mitre

State

PUBLISHED

Description

doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=analytics. A remote background administrator privilege user (or a user with permission to manage configuration analytics) could exploit the vulnerability to obtain database sensitive information.