CVE-2020-18215: Phpshe

High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.

Multiple SQL Injection vulnerabilities in PHPSHE 1.7 in phpshe/admin.php via the (1) ad_id, (2) menu_id, and (3) cashout_id parameters, which could let a remote malicious user execute arbitrary code.

Affected products

  • Phpshe Phpshe: version 1.7 only

Published 2021-02-09. Last modified 2026-06-17.