CVEs Blog | G5 Cyber Security

CVE-2020-21809 – SQL Injection vulnerability in NukeViet CMS module Shops 4.0.29 and 4.3 v

SQL Injection vulnerability in NukeViet CMS module Shops 4.0.29 and 4.3 via the (1) listid parameter in detail.php and the (2) group_price or groupid parameters in search_result.php.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-21809

Reference (s):

Exit mobile version