First published: Wed Nov 03 2021(Updated: )
SQL Injection vulnerability in eyoucms cms v1.4.7, allows attackers to execute arbitrary code and disclose sensitive information, via the tid parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Eyoucms Eyoucms | =1.4.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-24000.
The severity of CVE-2020-24000 is critical, with a severity value of 9.8.
This vulnerability allows attackers to execute arbitrary code and disclose sensitive information.
The affected software version of this vulnerability is eyoucms cms v1.4.7.
Yes, it is recommended to update to a patched version of eyoucms cms to mitigate this vulnerability.