Show filters
1 Total Results
Displaying 1-1 of 1
Sort by:
Attacker Value
Unknown

CVE-2020-26677

Disclosure Date: May 26, 2021 (last updated February 22, 2025)
Any user logged in to a vFairs 3.3 virtual conference or event can perform SQL injection with a malicious query to the API.