Security Advisory

CVE-2020-9398

9.8
CRITICAL

Vulnerability Description

ISPConfig before 3.1.15p3, when the undocumented reverse_proxy_panel_allowed=sites option is manually enabled, allows SQL Injection.
Published Date February 25, 2020
Official Source NIST NVD Advisory