CVE-2020-21784

Source
https://nvd.nist.gov/vuln/detail/CVE-2020-21784
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-21784.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-21784
Published
2021-06-24T16:15:08Z
Modified
2025-02-14T11:12:17.865076Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

phpwcms 1.9.13 is vulnerable to Code Injection via /phpwcms/setup/setup.php.

References

Affected packages

Git / github.com/slackero/phpwcms

Affected ranges

Type
GIT
Repo
https://github.com/slackero/phpwcms
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

phpwcms-1.*

phpwcms-1.6.529
phpwcms-1.6.531
phpwcms-1.7.0
phpwcms-1.7.1
phpwcms-1.7.2
phpwcms-1.7.3
phpwcms-1.7.4
phpwcms-1.7.5
phpwcms-1.7.6
phpwcms-1.7.7
phpwcms-1.7.9
phpwcms-1.8.0
phpwcms-1.8.0-RC1
phpwcms-1.8.0-RC2
phpwcms-1.8.1
phpwcms-1.8.2
phpwcms-1.8.3
phpwcms-1.8.4
phpwcms-1.9.0-beta.4
phpwcms-1.9.0-beta.5
phpwcms-1.9.0-beta.6
phpwcms-1.9.0-beta.7
phpwcms-1.9.0-rc.1
phpwcms-1.9.0-rc.2
phpwcms-1.9.2
phpwcms-1.9.3
phpwcms-1.9.5
phpwcms-1.9.6
phpwcms-1.9.7-dev
phpwcms-1.9.7-rc.1
phpwcms-1.9.7-rc.2
phpwcms-1.9.7-rc.3

phpwmcs-1.*

phpwmcs-1.9.0-beta.8

v1.*

v1.9.11
v1.9.12
v1.9.13
v1.9.7
v1.9.8