MetInfo 7.0.0 beta is susceptible to SQL injection via the admin/?n=language&c=language_general&a=doSearchParameter appno parameter (a different issue than CVE-2019-16997).
View the template here CVE-2019-17418.yaml
References:
https://github.com/ARPSyndicate/cvemon