An issue discovered in phpwcms 1.9.25 allows remote attackers to run arbitrary code via DB user field during installation.
We have discovered 754 live websites that are affected by CVE-2021-36424.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 754 live websites (72% of phpwcms install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 56 versions ( 73% of all versions) |
| 14 websites | |
| 409 websites | |
| 145 websites | |
| 36 websites | |
| 36 websites | |
| 19 websites | |
| 15 websites | |
| 15 websites | |
| 13 websites | |
| 10 websites |
| .de | 293 websites |
| .com.br | 145 websites |
| .com | 79 websites |
| .at | 48 websites |
| .nl | 24 websites |
| .it | 18 websites |
| .org | 17 websites |
| .ch | 14 websites |
| .net | 13 websites |
| .eu | 12 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *******.at | ***,*** | ||
| ******************.de | ***,*** | ||
| ********.ms | ***,*** | ||
| ****.*******.org | ***,*** | ||
| ******************.com | *,***,*** | ||
| *************.de | *,***,*** | ||
| ***.ch | *,***,*** | ||
| ********.***.my | *,***,*** | ||
| *************.de | *,***,*** | ||
| ***********.de | *,***,*** |