An issue was discovered in OpServices OpMon 9.3.1-1. Using password change parameters, an attacker could perform SQL injection without authentication.Referenceshttps://medium.com/%40ph0rensic/sql-injection-opmon-9-3-1-1-770bd7e7ad1