2019
12.01

NAPC Xinet (interface) Elegant 6 Asset Library version 6.1.655 allows pre-authentication error-based SQL injection via the /elegant6/login LoginForm[username] field when double quotes are used.

No Comment.

Add Your Comment

You must be logged in to post a comment.