ZeroHour

CVE-2020-23685

PoC
CVSS 3.1
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

SQL Injection vulnerability in 188Jianzhan v2.1.0, allows attackers to execute arbitrary code and gain escalated privileges, via the username parameter to login.php.

Vendors
vtimecn
Products
188jianzhan
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.