Phpzag is a niche web application or content-management system characterized by a focused product footprint centered on its core phpzag offering. The durable vulnerability signal involves SQL-injection weaknesses in input handling, a class endemic to web applications that accept and process user-supplied database queries. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpzag over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-8521CRITICAL SQL injection with start and length parameters in Records.php for phpzag live add edit delete data tables records with ajax php mysql | Jul 7, 2020 | 9.8 | 31 | NO | NO |
CVE-2020-8520CRITICAL SQL injection in order and column parameters in Records.php for phpzag live add edit delete data tables records with ajax php mysql | Jul 7, 2020 | 9.8 | 31 | NO | NO |
CVE-2020-8519CRITICAL SQL injection with the search parameter in Records.php for phpzag live add edit delete data tables records with ajax php mysql | Jul 7, 2020 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpzag.
Media articles that mention a CVE ID that affects a product developed by Phpzag — matched by CVE ID, not by vendor name.