CNNVD-202602-384 Information

CNNVD ID

CNNVD-202602-384

CVE-2020-37108

  • CNNVD Published: 2026-02-03

Description (Chinese)

PhpIX是泰国PhpIX公司的一个建站系统。 PhpIX存在SQL注入漏洞,该漏洞源于product_detail.php文件中的id参数存在SQL注入,可能导致远程攻击者操纵数据库查询。

Description (English)

PhpIX is a building system of PhpIX Thailand. PhpIX has an injection hole in SQL, which stems from the presence of SQL injections of id parameters in the protocol detail.php file, which may lead to remote attackors manipulating database queries.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

PhpIX

Published

2026-02-03

Last Modified

2026-02-24

References

http://www.allhandsmarketing.com/ http://www.pcollectionnecktie.com/sandbox/ https://www.exploit-db.com/exploits/48138 https://www.vulncheck.com/advisories/phpix-professional-id-sql-injection

Share on: