SQL Injection Vulnerability in phpList Affects Multiple Versions
CVE-2020-15072
8.8HIGH
What is CVE-2020-15072?
A vulnerability in phpList prior to version 3.5.5 allows attackers to exploit an error-based SQL Injection through the Import Administrators section. This could lead to unauthorized access and manipulation of database information, posing a serious risk to the confidentiality and integrity of the application's data. Users of phpList are highly encouraged to update to the latest version to mitigate this risk.
