nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-25952 CVE-2020-25952
CRITICAL
User Registration & Login and User Management System 2.1 - Login Bypass SQL Injection
Record summary
CVE-2020-25952 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBUser Registration & Login and User Management System 2.1 - Login Bypass SQL InjectionExploitDB exploitby Mayur ParmarNot analyzed1 file
References
5phpgurukul.com
https://phpgurukul.com/ systemweakness.com
https://systemweakness.com/cve-2020-25952-f60fff8ffac th3cyb3rc0p.medium.com
https://th3cyb3rc0p.medium.com/cve-2020-25952-f60fff8ffac exploit-db.com
https://www.exploit-db.com/exploits/49052