Total vulnerabilities in the database
QPR Portal before 2012.2.1 allows remote attackers to modify or delete notes via a direct request.
CVSS v2:
CWEs: