Vulnerability Description
SQL Injection in SysJust Syuan-Gu-Da-Shih, versions before 20191223, allowing attackers to perform unwanted SQL queries and access arbitrary file in the database.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sysjust | Syuan-Gu-Da-Shin | < 20191223 |
Related Weaknesses (CWE)
References
- https://tvn.twcert.org.tw/taiwanvn/TVN-201910013Third Party Advisory
- https://www.chtsecurity.com/news/a791f509-9782-4be1-b71f-22fc619f8215Third Party Advisory
- https://tvn.twcert.org.tw/taiwanvn/TVN-201910013Third Party Advisory
- https://www.chtsecurity.com/news/a791f509-9782-4be1-b71f-22fc619f8215Third Party Advisory
FAQ
What is CVE-2020-3937?
CVE-2020-3937 is a vulnerability with a CVSS score of 8.1 (HIGH). SQL Injection in SysJust Syuan-Gu-Da-Shih, versions before 20191223, allowing attackers to perform unwanted SQL queries and access arbitrary file in the database.
How severe is CVE-2020-3937?
CVE-2020-3937 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-3937?
Check the references section above for vendor advisories and patch information. Affected products include: Sysjust Syuan-Gu-Da-Shin.