Open-School 3.0, and Community Edition 2.3, allows SQL Injection via the index.php?r=students/students/document id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
open-school open-school 3.0 |
||
open-school open-school 2.3 |