Vulnerability Description
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phpgurukul | Dairy Farm Shop Management System | 1.0 |
Related Weaknesses (CWE)
References
- https://cinzinga.github.io/CVE-2020-5307-5308/Third Party Advisory
- https://www.exploit-db.com/exploits/47846ExploitThird Party AdvisoryVDB Entry
- https://cinzinga.github.io/CVE-2020-5307-5308/Third Party Advisory
- https://www.exploit-db.com/exploits/47846ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2020-5307?
CVE-2020-5307 is a vulnerability with a CVSS score of 9.8 (CRITICAL). PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, t...
How severe is CVE-2020-5307?
CVE-2020-5307 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-5307?
Check the references section above for vendor advisories and patch information. Affected products include: Phpgurukul Dairy Farm Shop Management System.