ZeroHour

CVE-2020-18714

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in wordModel.php's getdata function.

Vendors
rockoa
Products
rockoa
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.