CVE-2019-25755 | Wdmtech vReview 1.9.11 editReview Task Endpoint cmId sql injection (Exploit 46227 / EDB-46227)
A vulnerability categorized as critical has been discovered in Wdmtech vReview 1.9.11. Affected by this issue is some unknown functionality of the component editReview Task Endpoint. The manipulation of the argument cmId results in sql injection.
This vulnerability is known as CVE-2019-25755. It is possible to launch the attack remotely. Furthermore, an exploit is available.