CVE-2020-5511

HIGH

PHPGurukul Small CRM v2.0 - Auth Bypass

Title source: llm
STIX 2.1

Description

PHPGurukul Small CRM v2.0 was found vulnerable to authentication bypass via SQL injection when logging into the administrator login page.

Exploits (1)

exploitdb WORKING POC VERIFIED
by FULLSHADE · textwebappsphp
https://www.exploit-db.com/exploits/47874

Scores

CVSS v3 8.8
EPSS 0.0050
EPSS Percentile 65.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
small_crm_project/small_crm 2.0
Published Jan 08, 2020
Tracked Since Feb 18, 2026