Looking for the vulnerability index of Invicti's legacy products?
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-25019) - Vulnerability Database

LimeSurvey Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-25019)

Description

LimeSurvey before 4.0.0-RC4 allows SQL injection via the participant model.

References

Related Vulnerabilities