Логотип exploitDog
bind:CVE-2020-37076
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37076

Количество 2

Количество 2

nvd логотип

CVE-2020-37076

около 2 месяцев назад

Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php that allows remote attackers to manipulate database queries. Attackers can exploit this vulnerability by sending crafted UNION SELECT payloads to extract database information through boolean-based, error-based, and time-based injection techniques.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xwhw-cvrw-c9g5

около 2 месяцев назад

Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php that allows remote attackers to manipulate database queries. Attackers can exploit this vulnerability by sending crafted UNION SELECT payloads to extract database information through boolean-based, error-based, and time-based injection techniques.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37076

Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php that allows remote attackers to manipulate database queries. Attackers can exploit this vulnerability by sending crafted UNION SELECT payloads to extract database information through boolean-based, error-based, and time-based injection techniques.

CVSS3: 8.2
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xwhw-cvrw-c9g5

Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php that allows remote attackers to manipulate database queries. Attackers can exploit this vulnerability by sending crafted UNION SELECT payloads to extract database information through boolean-based, error-based, and time-based injection techniques.

CVSS3: 8.2
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу