mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 00:28:04 +02:00
709 B
709 B
CVE-2020-25905
Description
An SQL Injection vulnerabilty exists in Sourcecodester Mobile Shop System in PHP MySQL 1.0 via the email parameter in (1) login.php or (2) LoginAsAdmin.php.
POC
Reference
- https://packetstormsecurity.com/files/159132/Mobile-Shop-System-1.0-SQL-Injection.html
- https://www.exploit-db.com/exploits/48916
Github
No PoCs found on GitHub currently.