Security Advisory
CVE-2020-36945
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
WebDamn User Registration Login System contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating email credentials. Attackers can inject the payload <email> OR 1=1 in both username and password fields to gain unauthorized access to the user panel.