CVE-2020-19248

Publication date

2025-02-21 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability in PbootCMS 1.4.1 in parsing if statements in templates, resulting in a malicious users ability to contaminate template content by searching for page contamination URLs, thus triggering vulnerabilities when the program uses eval statements to parse templates.