Description
Rukovoditel v3.2.1 was discovered to contain a SQL injection vulnerability via the order_by parameter at /rukovoditel/index.php?module=logs/view&type=php.
Remediation
References
Related Vulnerabilities
WordPress Plugin FD Feedburner Cross-Site Request Forgery (1.42)
Liferay DXP Incorrect Default Permissions Vulnerability (CVE-2024-25605)
concrete5 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-5107)
WordPress Plugin Backup Migration Information Disclosure (1.2.8)