Appcms · Appcms · CVE-2020-36004
Name of the Vulnerable Software and Affected Versions:
AppCMS version 2.0.101
Description:
The issue allows attackers to obtain sensitive database information through a SQL injection vulnerability in the `/admin/download frame.php` file.
Recommendations:
For AppCMS version 2.0.101, consider restricting access to the `/admin/download frame.php` file until a patch is available. As a temporary workaround, review and modify the SQL queries in the affected file to prevent injection attacks.