CVE-2020-36945
Severity CVSS v4.0:
HIGH
Type:
CWE-89
SQL Injection
Publication date:
28/01/2026
Last modified:
28/01/2026
Description
WebDamn User Registration Login System contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating email credentials. Attackers can inject the payload '' OR '1'='1' in both username and password fields to gain unauthorized access to the user panel.
Impact
Base Score 4.0
8.80
Severity 4.0
HIGH
Base Score 3.x
8.20
Severity 3.x
HIGH



