← Back

CVE-2020-8967

nvd nist
Published: Jun 1, 2020Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

There is an improper Neutralization of Special Elements used in an SQL Command (SQL Injection) vulnerability in php files of GESIO ERP. GESIO ERP all versions prior to 11.2 allows malicious users to retrieve all database information.

Affected (1)

Products: Gesio: Erp
1 product
Erp
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 11.2

References (2)

Timeline

No history available yet.