CVE-2020-35276

Publication date

2020-12-21 14:51:33

Family

mitre

State

PUBLISHED

Description

EgavilanMedia ECM Address Book 1.0 is affected by SQL injection. An attacker can bypass the Admin Login panel through SQLi and get Admin access and add or remove any user.