CVE-2020-37147 | ATutor 2.2.4 admin_delete.php ID sql injection (Exploit 48117 / EDB-48117)
A vulnerability classified as critical has been found in ATutor 2.2.4. Affected is an unknown function of the file admin_delete.php. Performing a manipulation of the argument ID results in sql injection.
This vulnerability is known as CVE-2020-37147. Remote exploitation of the attack is possible. Furthermore, an exploit is available.