SQL Injection Vulnerability in IBM Kenexa LMS on Cloud
CVE-2016-8928
7.6HIGH
What is CVE-2016-8928?
IBM Kenexa LMS on Cloud is susceptible to an SQL injection vulnerability, enabling remote attackers to execute crafted SQL queries. This flaw could permit unauthorized access to sensitive information, allowing attackers to view, modify, or delete data from the backend database, posing a significant security risk to users.
Affected Version(s)
Kenexa LMS on Cloud 13.0
Kenexa LMS on Cloud 13.1
Kenexa LMS on Cloud 13.2