Loading market data...
← Back to CVE feed

CVE-2026-6881

UNKNOWN View on NVD ↗

Description

A SQL Injection in the Giving Reports functionality in Ellucian Advance Web and Legacy Advance allows an authenticated attacker to extract sensitive information from databases via a crafted SQL query in the class credit field. This issue affects Advance Web: all versions; Legacy Advance: all versions. Ellucian CRM Advance is not impacted.

Published: Jul 28, 2026 21:17 UTC Modified: Jul 29, 2026 14:16 UTC