CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It involves a SQL injection risk.
CVE
CVE-2020-8592
Severity
CRITICAL
CVSS
9.8
EPSS
1.40%
Original NVD Description
eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feature).
Related CVEs
Other vulnerabilities affecting the same vendor(s)