CVE-2020-10190
An issue was discovered in MunkiReport before 5.3.0. An authenticated user could achieve SQL Injection in app/models/tablequery.php by crafting a special payload on the /datatables/data endpoint.
Date published : 2020-03-09
https://github.com/munkireport/munkireport-php/releases
https://github.com/munkireport/munkireport-php/wiki/20200309-Authenticated-SQL-injection