CVE-2020-19112: SQL Injection
Published May 5, 2021
·Updated
SQL Injection vulnerability in Online Book Store v1.0 via the bookisbn parameter to admindelete.php, which could let a remote malicious user execute arbitrary code.
Affected Software
1 affected component
Projectworlds Online Book Store Project In Php=1.0
Event History
May 5, 2021
CVE Published
via MITRE·09:43 PM
Data Sourced
via MITRE·09:43 PM
Description
Frequently Asked Questions
1
What is CVE-2020-19112?
CVE-2020-19112 is a SQL Injection vulnerability in Online Book Store v1.0.
2
How does CVE-2020-19112 impact the system?
CVE-2020-19112 could allow a remote malicious user to execute arbitrary code.
3
How severe is CVE-2020-19112?
CVE-2020-19112 has a severity rating of 9.8 (Critical).
4
What software is affected by CVE-2020-19112?
Online Book Store v1.0 by Projectworlds is affected by CVE-2020-19112.
5
Is there a fix for CVE-2020-19112?
To fix CVE-2020-19112, apply the latest patches or updates provided by the software vendor.