MISP before 2.5.37 is vulnerable to SQL injection via the order parameter in EventsController. The POST body order value is passed directly into ORDER BY clauses without validation.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view