Metinfo · Metinfo · CVE-2020-18175
Name of the Vulnerable Software and Affected Versions:
Metinfo version 6.1.3
Description:
The issue is related to a SQL Injection vulnerability. It can be exploited via a `dosafety emailadd` action in the `basic.php` file.
Recommendations:
For Metinfo version 6.1.3, consider restricting access to the `dosafety emailadd` action in `basic.php` to minimize the risk of exploitation until a patch is available.