An issue was discovered in the Sales component in webERP 4.15. SalesInquiry.php has SQL Injection via the SortBy parameter.Referenceshttps://github.com/0xUhaw/CVE-Bins/tree/master/webERP%20SQLI-1