Lucene search

K
osvGoogleOSV:CVE-2020-20296
HistoryFeb 01, 2021 - 6:15 p.m.

CVE-2020-20296

2021-02-0118:15:13
Google
osv.dev
3
cmswing
sql commands
arbitrary
execution
software

AI Score

8

Confidence

Low

EPSS

0.004

Percentile

72.6%

An issue was found in CMSWing project version 1.3.8, Because the rechargeAction function does not check the balance parameter, malicious parameters can execute arbitrary SQL commands.

AI Score

8

Confidence

Low

EPSS

0.004

Percentile

72.6%

Related for OSV:CVE-2020-20296