CVE-2020-10505
The School Manage System before 2020, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of SQL Injection, an attacker can use a union based injection query string to get databases schema and username/password.
Date published : 2020-04-15
https://www.chtsecurity.com/news/be93c576-e421-489f-9453-a462bdd4c90d
