ZeroHour

CVE-2020-25905

PoC
CVSS 3.1
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

An SQL Injection vulnerabilty exists in Sourcecodester Mobile Shop System in PHP MySQL 1.0 via the email parameter in (1) login.php or (2) LoginAsAdmin.php.

Vendors
mobile shop system project
Products
mobile shop system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.