OPENSIS 80 SQL INJECTION VULNERABILITY CVE-2021-39378 A SQL Injection vulnerability exists in version 80 of openSIS when MySQL (MariaDB) is being used as the application database A malicious attacker can issue SQL commands to the MySQL (MariaDB) database through the vulnerable str= parameter Vulnerable PHP Page: NamesListphp Vulnerable Payload sqlmap -u "localh