Description
phpList 3.5.9 allows SQL injection by admins who provide a crafted fourth line of a file to the "Config - Import Administrators" page.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-23366 | phpList 3.5.9 allows SQL injection by admins who provide a crafted fourth line of a file to the "Config - Import Administrators" page. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T17:09:15.187Z
Reserved: 2020-12-25T00:00:00.000Z
Link: CVE-2020-35708
No data.
Status : Modified
Published: 2020-12-25T06:15:14.330
Modified: 2024-11-21T05:27:53.337
Link: CVE-2020-35708
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD