Skip to main content
Loading…
    CVE-2017-1000120 — [ERPNext][Frappe Version <= 7.1.27] SQL injection vulnerability in frappe.share.get_users allows remote authenticated users to execute arbitrary SQL commands via the fields parameter. — CVE Database · The Intelligence Room