CVE-2020-23685: Vtimecn 188jianzhan

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

SQL Injection vulnerability in 188Jianzhan v2.1.0, allows attackers to execute arbitrary code and gain escalated privileges, via the username parameter to login.php.

Affected products

  • Vtimecn 188jianzhan: version 2.10 only

Published 2021-11-02. Last modified 2026-06-17.