
CVE-2020-37147 ATutor 2.2.4 contains a SQL injection vulnerability in the admin user deletion page that allows authenticated attackers to manipulate database queries through the 'id… https://www.cve.org/CVERecord?id=CVE-2020-37147
Post summary
The post outlines a SQL injection flaw in ATutor 2.2.4’s admin user deletion page that allows authenticated users to manipulate database queries.

