CVE-2020-14069: Mk-Auth
Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.
An issue was discovered in MK-AUTH 19.01. There are SQL injection issues in mkt/ PHP scripts, as demonstrated by arp.php, dhcp.php, hotspot.php, ip.php, pgaviso.php, pgcorte.php, pppoe.php, queues.php, and wifi.php.
Affected products
- Mk-Auth Mk-Auth: version 19.01 only
Published 2020-06-29. Last modified 2026-06-17.