CVE-2020-21808

Source
https://nvd.nist.gov/vuln/detail/CVE-2020-21808
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-21808.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-21808
Aliases
Published
2021-07-30T14:15:13Z
Modified
2024-06-06T13:10:20.618210Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

SQL Injection vulnerability in NukeViet CMS 4.0.10 - 4.3.07 via:the topicsid parameter in modules/news/admin/addtotopics.php.

References

Affected packages

Git / github.com/nukeviet/nukeviet

Affected ranges

Type
GIT
Repo
https://github.com/nukeviet/nukeviet
Events

Affected versions

4.*

4.0.10
4.0.11
4.0.12
4.0.13
4.0.14
4.0.15
4.0.16
4.0.17
4.0.18
4.0.21
4.0.22
4.0.23
4.0.24
4.0.25
4.0.26
4.0.27
4.0.28
4.0.29
4.1.01
4.1.02
4.2.02
4.2.03
4.3.00
4.3.01
4.3.02
4.3.03
4.3.04
4.3.05
4.3.06
4.3.07