Product
An unauthenticated remote SQL injection vulnerability in the Raisecom Communication Command and Dispatch Management Platform allows attackers to execute arbitrary database queries via the 'sip' parameter in 'getpwd.php'.