A vulnerability was found in Kados R10 GreenBee. It has been declared as critical. This impacts an unknown function of the component Parameter Handler. The manipulation of the argument language_tag results in sql injection.

This vulnerability is reported as CVE-2019-25696. The attack can be launched remotely. Moreover, an exploit is present.