CVE-2020-35687

PHPFusion version 9.03.90 is vulnerable to CSRF attack which leads to deletion of all shoutbox messages by the attacker on behalf of the logged in victim.


We have discovered 86 live websites that are affected by CVE-2020-35687.

Run a Free Instant Scan




Affected Software

Product  PHPFusion
Category Content Management System
Vulnerable Domains86 live websites (48% of PHPFusion install base)
Vulnerable Versions
  • from 0 through 9.3.90
Vulnerable Versions Count13 versions ( 65% of all versions)



Details

  • Published - Jan 13, 2021
  • Updated - Aug 4, 2024

Website Distribution by Country

Number of websites using CVE-2020-35687
United States14 websites



Netherlands16 websites
Germany14 websites
GB12 websites
Poland12 websites
Denmark3 websites
Czech Republic2 websites
Hungary2 websites
Slovakia2 websites
Belgium1 websites

Website Distribution by TLD

Number of websites using CVE-2020-35687
.eu13 websites
.com12 websites
.de10 websites
.pl8 websites
.nl8 websites
.org7 websites
.co.uk5 websites
.dk4 websites
.info2 websites
.net2 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2020-35687

Top websites that are affected by CVE-2020-35687. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.****.org Netherlands*,***,***
*********.org United States*,***,***
*******.***.la Laos*,***,***
**********.**.uk GB*,***,***
*********.com France*,***,***
******.ro Romania*,***,***
*********.pl Poland*,***,***
**********.eu Czech Republic*,***,***
********.*******.eu Poland*,***,***
***.************.nl Netherlands*,***,***
See full domain list

FAQ

A total of 86 websites have been identified as vulnerable to CVE-2020-35687, based on global website indexing conducted by WebTechSurvey.
The PHPFusion is affected by the CVE-2020-35687 vulnerability.
PHPFusion versions up to and including 9.3.90 are vulnerable to CVE-2020-35687.