CVE-2020-13381: SQL Injection
Published Jul 1, 2020
·Updated
openSIS through 7.4 allows SQL Injection.
Affected Software
1 affected component
OS4ED openSIS<=7.4
Event History
Jul 1, 2020
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-13381?
CVE-2020-13381 has been classified as a high severity SQL Injection vulnerability.
2
How do I fix CVE-2020-13381?
To fix CVE-2020-13381, upgrade openSIS to version 7.4 or later where the vulnerability has been addressed.
3
What are the consequences of CVE-2020-13381?
CVE-2020-13381 could allow an attacker to execute arbitrary SQL commands, which can lead to data exposure or manipulation.
4
Which versions of openSIS are affected by CVE-2020-13381?
CVE-2020-13381 affects openSIS versions up to and including 7.4.
5
Is CVE-2020-13381 remotely exploitable?
Yes, CVE-2020-13381 can potentially be exploited remotely without authentication.