CVE-2020-18106

Publication date

2021-08-27 19:10:31

Family

mitre

State

PUBLISHED

Description

The GET parameter "id" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection.