LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2015-5078 - Vulnerability Database

LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2015-5078

Medium
Reference: CVE-2015-5078
Title: LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

SQL injection vulnerability in the insert function in application/controllers/admin/dataentry.php in LimeSurvey 2.06 allows remote authenticated users to execute arbitrary SQL commands via the closedate parameter.