CVE-2020-15540

We-com OpenData CMS 2.0 allows SQL Injection via the username field on the administrator login page.