AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-6120

HIGH · CVSS 8.8 EPSS 1.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-09-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-6120
Severity
HIGH
CVSS
8.8
EPSS
1.40%

Original NVD Description

SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The fn parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.