CVE-2020-5307: SQL Injection
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-5307?
The severity of CVE-2020-5307 is critical, with a severity value of 9.8.
What is the affected software for CVE-2020-5307?
The affected software for CVE-2020-5307 is Phpgurukul Dairy Farm Shop Management System 1.0.
How does CVE-2020-5307 manifest?
CVE-2020-5307 manifests as a SQL injection vulnerability.
Which parameters are vulnerable to SQL injection in CVE-2020-5307?
The username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php are vulnerable to SQL injection in CVE-2020-5307.
Are there any references or additional information for CVE-2020-5307?
Yes, you can find more information about CVE-2020-5307 at the following references: [link1](https://cinzinga.github.io/CVE-2020-5307-5308/), [link2](https://www.exploit-db.com/exploits/47846).