CVE-2020-20915: SQL Injection
Published Apr 4, 2023
·Updated
SQL Injection vulnerability found in PublicCMS v.4.0 allows a remote attacker to execute arbitrary code via sql parameter of the the SysSiteAdminControl.
Affected Software
1 affected component
PublicCMS publiccms=4.0
Event History
Apr 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-20915?
CVE-2020-20915 is a SQL Injection vulnerability found in PublicCMS v.4.0.
2
How does CVE-2020-20915 impact PublicCMS v.4.0?
CVE-2020-20915 allows a remote attacker to execute arbitrary code via the sql parameter of the SysSiteAdminControl.
3
What is the severity level of CVE-2020-20915?
CVE-2020-20915 has a severity level of critical.
4
What is the Common Weakness Enumeration (CWE) for CVE-2020-20915?
CVE-2020-20915 is associated with CWE-89, which is the weakness for SQL Injection vulnerabilities.
5
Where can I find more information about CVE-2020-20915?
You can find more information about CVE-2020-20915 at the following reference: [GitHub Issue](https://github.com/sanluan/PublicCMS/issues/29)