
CVE-2019-25346 TheSystem 1.0 contains a SQL injection vulnerability that allows attackers to bypass authentication by manipulating the 'server_name' parameter. Attackers can inject … https://www.cve.org/CVERecord?id=CVE-2019-25346
Post summary
The text discloses a SQL injection in TheSystem 1.0 that allows authentication bypass by manipulating the 'server_name' parameter; no PoC, exploit, or patch information is provided.
