Description
Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the filters[0][value] or filters[1][value] parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Calendar Unspecified Vulnerability (1.3.10)
TYPO3 Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-14251)
PHP Other Vulnerability (CVE-2003-0166)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-5296)
PHP Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2014-5459)