Feed/CVE-2020-3936
CVE-2020-3936CRITICALCVSS 10.0

CVE-2020-3936

Published Mar 26, 2020·Updated Jun 16, 2026

NVD Description

UltraLog Express device management interface does not properly filter user inputted string in some specific parameters, attackers can inject arbitrary SQL command.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free