mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 21:18:06 +02:00
709 B
709 B
CVE-2020-9265
Description
phpMyChat-Plus 1.98 is vulnerable to multiple SQL injections against the deluser.php Delete User functionality, as demonstrated by pmc_username.
POC
Reference
- https://github.com/J3rryBl4nks/PHPMyChatPlus/blob/master/SQLi.md
- https://github.com/J3rryBl4nks/PHPMyChatPlus/blob/master/SQLi.md