CVE-2020-15924: Midasolutions Eframework

High severity, CVSS 7.5. EPSS: 1.9% chance of exploitation in the next 30 days.

There is a SQL Injection in Mida eFramework through 2.9.0 that leads to Information Disclosure. No authentication is required. The injection point resides in one of the authentication parameters.

Affected products

Published 2020-07-24. Last modified 2026-06-17.