CVEs Blog | G5 Cyber Security

CVE-2020-20289 – Sql injection vulnerability in the yccms 3.3 project. The no_top function

Sql injection vulnerability in the yccms 3.3 project. The no_top function’s improper judgment of the request parameters, triggers a sql injection vulnerability.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-20289

Reference (s):

Exit mobile version