Sploitus

CVE-2020-26625

2 known exploits for CVE-2020-26625

A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the 'user_id' parameter after the login portal.

Affected products
Gila Cms
Gilacms Gila Cms
≤ 1.15.4
CVSS 3.1
3.8 LOW
EPSS
0.7% (50th percentile)
Weakness
CWE-89
NVD status
Modified
Published
2024-01-02
CVE-2020-26625 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2020-26625

Proof-of-concept code and exploit modules indexed by Sploitus