CNNVD-202602-232 Information

CNNVD ID

CNNVD-202602-232

CVE-2020-37076

  • CNNVD Published: 2026-02-03

Description (Chinese)

Victor CMS是尼日利亚Victor Alagwu个人开发者的一套开源的内容管理系统。 Victor CMS 1.0版本存在SQL注入漏洞,该漏洞源于post.php上的post参数容易受到SQL注入攻击,可能导致提取数据库信息。

Description (English)

Victor CMS is an open-source content management system for Victor Aragwu personal developers in Nigeria. Victor CMS Version 1.0 contains an injection loophole in SQL, which stems from the fact that the post parameters on the post.php are vulnerable to SQL injections and may lead to the extraction of database information.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

个人开发者

Published

2026-02-03

Last Modified

2026-02-24

References

https://github.com/VictorAlagwu/CMSsite https://www.exploit-db.com/exploits/48451 https://www.vulncheck.com/advisories/victor-cms-post-sql-injection

Share on: