SQL Injection Vulnerability in PHP-Fusion 9.03.50
CVE-2020-14960
7.2HIGH
What is CVE-2020-14960?
A SQL injection vulnerability exists in PHP-Fusion version 9.03.50, specifically impacting the endpoint administration/comments.php through the ctype parameter. This flaw can allow malicious actors to manipulate database queries, leading to unauthorized access or data disclosure.