PHP-Fusion Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2020-14960 - Vulnerability Database
PHP-Fusion Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2020-14960
High
Reference:
CVE-2020-14960
Title:
PHP-Fusion Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:
A SQL injection vulnerability in PHP-Fusion 9.03.50 affects the endpoint administration/comments.php via the ctype parameter