First published: Mon Jul 12 2021(Updated: )
SQL Injection vulnerability in MetInfo 7.0.0beta via admin/?n=language&c=language_web&a=doAddLanguage.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Metinfo Metinfo | =7.0.0-beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-21131 is high with a score of 7.2.
The SQL Injection vulnerability in MetInfo 7.0.0beta occurs through the 'admin/?n=language&c=language_web&a=doAddLanguage' endpoint.
MetInfo 7.0.0beta is affected by CVE-2020-21131.
To fix the SQL Injection vulnerability in MetInfo 7.0.0beta, it is recommended to update to a version that has the issue patched.
The Common Weakness Enumeration (CWE) identifier for CVE-2020-21131 is CWE-89.