Security Advisory

CVE-2019-16264

9.8
CRITICAL

Vulnerability Description

In Escuela de Gestion Publica Plurinacional (EGPP) Sistema Integrado de Gestion Academica (GESAC) v1, the username parameter of the authentication form is vulnerable to SQL injection, allowing attackers to access the database.
Published Date September 16, 2019
Official Source NIST NVD Advisory