CVE-2020-35427: SQL Injection
Published Jul 20, 2021
·Updated
SQL injection vulnerability in PHPGurukul Employee Record Management System 1.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
Affected Software
1 affected component
Phpgurukul Employee Record Management System=1.1
Event History
Jul 20, 2021
CVE Published
via MITRE·01:22 PM
Data Sourced
via MITRE·01:22 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-35427?
The severity of CVE-2020-35427 is critical with a CVSS score of 9.8.
2
How does CVE-2020-35427 affect PHPGurukul Employee Record Management System?
CVE-2020-35427 allows remote attackers to execute arbitrary SQL commands and bypass authentication in PHPGurukul Employee Record Management System 1.1.
3
What is the affected version of PHPGurukul Employee Record Management System?
The affected version of PHPGurukul Employee Record Management System is 1.1.
4
Is there a fix available for CVE-2020-35427?
Yes, it is recommended to update PHPGurukul Employee Record Management System to a version that has patched the SQL injection vulnerability.
5
Where can I find more information about CVE-2020-35427?
You can find more information about CVE-2020-35427 on the official PHPGurukul website and the Exploit Database.