SQL injection vulnerability in tracking/courseLog.php in Dokeos 1.6.5 and earlier allows remote attackers to execute arbitrary SQL commands via the scormcontopen parameter.
- https://www.exploit-db.com/exploits/3980
No PoCs found on GitHub currently.