High severity8.8NVD Advisory· Published Feb 3, 2026· Updated Jun 17, 2026
CVE-2020-37116
CVE-2020-37116
Description
GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, which allows remote logins. Attackers with access to the platform can remotely access phpMyAdmin and, after uploading a shell, view the config.php file to obtain the MySQL password, leading to full database compromise.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: =1.7.3
=2.10.0.2+ 1 more
- (no CPE)range: =2.10.0.2
- (no CPE)range: = 2.10.0.2
- cpe:2.3:a:gunet:open_eclass_platform:1.7.3:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/48163nvdExploitThird Party AdvisoryVDB Entry
- www.vulncheck.com/advisories/gunet-openeclass-e-learning-platform-phpmyadmin-remote-accessnvdThird Party Advisory
- download.openeclass.org/files/docs/1.7/CHANGES.txtnvdRelease Notes
- www.openeclass.orgnvdProduct
News mentions
0No linked articles in our index yet.