Lucene search

K
cvelistMitreCVELIST:CVE-2020-25990
HistoryOct 01, 2020 - 1:57 p.m.

CVE-2020-25990

2020-10-0113:57:54
mitre
www.cve.org

9.9 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.5%

WebsiteBaker 2.12.2 allows SQL Injection via parameter ‘display_name’ in /websitebaker/admin/preferences/save.php. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

9.9 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.5%