{"containers":{"cna":{"affected":[{"product":"CMS","vendor":"Everywhere","versions":[{"status":"affected","version":"n/a"}]}],"credits":[{"lang":"en","value":"Mostafa Farzaneh"}],"descriptions":[{"lang":"en","value":"A vulnerability was found in Everywhere CMS. It has been classified as critical. Affected is an unknown function. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely."}],"metrics":[{"cvssV3_1":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"LOW","baseScore":6.3,"baseSeverity":"MEDIUM","confidentialityImpact":"LOW","integrityImpact":"LOW","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","version":"3.1"}}],"problemTypes":[{"descriptions":[{"cweId":"CWE-89","description":"CWE-89 SQL Injection","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2022-06-03T19:10:50.000Z","orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB"},"references":[{"tags":["x_refsource_MISC"],"url":"https://vuldb.com/?id.159954"}],"title":"Everywhere CMS sql injection","x_generator":"vuldb.com","x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cna@vuldb.com","ID":"CVE-2020-36537","REQUESTER":"cna@vuldb.com","STATE":"PUBLIC","TITLE":"Everywhere CMS sql injection"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"CMS","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"Everywhere"}]}},"credit":"Mostafa Farzaneh","data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"A vulnerability was found in Everywhere CMS. It has been classified as critical. Affected is an unknown function. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely."}]},"generator":"vuldb.com","impact":{"cvss":{"baseScore":"6.3","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","version":"3.1"}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-89 SQL Injection"}]}]},"references":{"reference_data":[{"name":"https://vuldb.com/?id.159954","refsource":"MISC","url":"https://vuldb.com/?id.159954"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-04T17:30:08.266Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://vuldb.com/?id.159954"}]},{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2025-04-14T17:14:19.131835Z","id":"CVE-2020-36537","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2025-04-15T14:35:01.363Z"}}]},"cveMetadata":{"assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","assignerShortName":"VulDB","cveId":"CVE-2020-36537","datePublished":"2022-06-03T19:10:50.000Z","dateReserved":"2022-06-03T00:00:00.000Z","dateUpdated":"2025-04-15T14:35:01.363Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}