Files
CVEs-PoC/2020/CVE-2020-11537.md
T
2025-09-29 21:09:30 +02:00

677 B

CVE-2020-11537

Description

A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API.

POC

Reference

Github

No PoCs found on GitHub currently.