CVE-2020-23945

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
27/10/2020
Last modified:
27/10/2020

Description

A SQL injection vulnerability exists in Victor CMS V1.0 in the cat_id parameter of the category.php file. This parameter can be used by sqlmap to obtain data information in the database.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:victor_cms_project:victor_cms:1.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools