Critical severity9.8NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026
CVE-2020-11816
CVE-2020-11816
Description
Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the reports_id (POST) parameter.
Affected products
3cpe:2.3:a:rukovoditel:rukovoditel:2.5.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:rukovoditel:rukovoditel:2.5.2:*:*:*:*:*:*:*
- (no CPE)range: <=2.5.2
- Rukovoditel/Rukovoditeldescription
Patches
Vulnerability mechanics
References
1- fatihhcelik.blogspot.com/2020/01/rukovoditel-sql-injection-reportsid-post.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.