CVE-2019-15301 (bpm_online_crm_system_sdk)

A SQL injection vulnerability in the method Terrasoft.Core.DB.Column.Const() in Terrasoft Bpm’online CRM-System SDK 7.13 allows attackers to execute arbitrary SQL commands via the value parameter.
Source: NIST
CVE-2019-15301 (bpm_online_crm_system_sdk)