CVE-2019-7731: Mywebsql

Critical severity, CVSS 9.8. EPSS: 4.2% chance of exploitation in the next 30 days.

MyWebSQL 3.7 has a remote code execution (RCE) vulnerability after an attacker writes shell code into the database, and executes the Backup Database function with a .php filename for the backup's archive file.

Affected products

Published 2019-02-11. Last modified 2026-06-17.