CVE-2020-36945

Severity CVSS v4.0:
HIGH
Type:
CWE-89 SQL Injection
Publication date:
28/01/2026
Last modified:
28/01/2026

Description

WebDamn User Registration Login System contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating email credentials. Attackers can inject the payload '' OR '1'='1' in both username and password fields to gain unauthorized access to the user panel.