CVE-2020-36626 is a critical SQL injection vulnerability found in the Modern Tribe Panel Builder Plugin, specifically within the add_post_content_filtered_to_search_sql function of the ModularContent/SearchFilter.php file. This vulnerability has a CVSS score of 6.1 (Medium) and can be exploited remotely with low attack complexity, potentially leading to limited disclosure of confidential information and data integrity issues. While the exploit has been publicly disclosed, there is no evidence of active exploitation, Metasploit modules, or ExploitDB entries, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2020-05-08CPE matchmatch criteria | cpe:2.3:a:tri:panel_builder:*:*:*:*:*:wordpress:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.