VYPR

Phpscript Sgh

by Geraked

Source repositories

CVEs (1)

  • CVE-2020-36951HigJan 27, 2026
    risk 0.53cvss 8.2epss 0.00

    Phpscript-sgh 0.1.0 contains a time-based blind SQL injection vulnerability in the admin interface that allows attackers to manipulate database queries through the 'id' parameter. Attackers can exploit this vulnerability by crafting malicious payloads that trigger time delays, enabling them to extract sensitive database information through conditional sleep techniques.