Vulnerability CVE-2020-35597


Published: 2022-06-16

Description:
Victor CMS 1.0 is vulnerable to SQL injection via c_id parameter of admin_edit_comment.php, p_id parameter of admin_edit_post.php, u_id parameter of admin_edit_user.php, and edit parameter of admin_update_categories.php.

 References:
https://cxsecurity.com/issue/WLB-2020120118
https://github.com/VictorAlagwu/CMSsite/issues/16
https://www.exploit-db.com/exploits/49282

Copyright 2026, cxsecurity.com

 

Back to Top