A vulnerability was found in Supsystic Ultimate Maps 1.1.12 . It has been declared as critical . This vulnerability affects the function getListForTbl of the component Requests Handler . The manipulation of the argument sidx results in sql injection. This vulnerability is identified as CVE-2020-37242 . The attack can be executed remotely. Additionally, an exploit exists.