A vulnerability was found in Everywhere CMS. It has been classified as critical. Affected is an unknown function. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely.
References
Link | Resource |
---|---|
https://vuldb.com/?id.159954 | Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2022-06-07 18:15
Updated : 2024-02-28 19:09
NVD link : CVE-2020-36537
Mitre link : CVE-2020-36537
CVE.ORG link : CVE-2020-36537
JSON object : View
Products Affected
everywhere
- everywhere_cms
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')