CVE-2019-25675 | eDirectory 1.0 Login Endpoint language_file.php key sql injection (Exploit 46423)
A vulnerability was found in eDirectory 1.0. It has been rated as critical. The impacted element is an unknown function of the file language_file.php of the component Login Endpoint. The manipulation of the argument key leads to sql injection.
This vulnerability is traded as CVE-2019-25675. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.