CVE-2020-21152

Publication date

2023-01-20 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability in inxedu 2.0.6 allows attackers to execute arbitrary commands via the functionIds parameter to /saverolefunction.