CRITICAL
There is a time-based blind SQL injection vulnerability in the Access Manager component before 9.18.040 and 10.x before 10.18.040 in ELO ELOenterprise 9 and 10 and ELOprofessional 9 and 10 that makes it possible to read all database content
Published Jul 11, 2018
9.8
CRITICALCVSS 3.0
EPSS 1.18%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.