Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

H9Dawno

#41301of 53,632
6.5Total CVSS
Vulnerabilities · 1
PT-2021-11900
6.5
2021-06-03
Appcms · Appcms · CVE-2020-36004
Name of the Vulnerable Software and Affected Versions: AppCMS version 2.0.101 Description: The issue allows attackers to obtain sensitive database information through a SQL injection vulnerability in the `/admin/download frame.php` file. Recommendations: For AppCMS version 2.0.101, consider restricting access to the `/admin/download frame.php` file until a patch is available. As a temporary workaround, review and modify the SQL queries in the affected file to prevent injection attacks.