Security Advisory
CVE-2020-8592
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feature).