SQL Injection Vulnerability in WUZHICMS by SuperSalsa20
CVE-2020-20413
9.8CRITICAL
What is CVE-2020-20413?
An SQL injection vulnerability exists in WUZHICMS version 4.1.0, which allows remote attackers to execute arbitrary SQL code through the checktitle() function located in admin/content.php. Exploiting this vulnerability could lead to unauthorized access and manipulation of the database.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
