SQL Injection Vulnerability in OS4ED openSIS 8.0's CheckDuplicateName.php Allows Database Information Extraction

SQL Injection Vulnerability in OS4ED openSIS 8.0's CheckDuplicateName.php Allows Database Information Extraction

CVE-2021-40636 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

OS4ED openSIS 8.0 is affected by SQL Injection in CheckDuplicateName.php, which can extract information from the database.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.