CVE-2020-23976: Webexcels Ecommerce CMS

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Webexcels Ecommerce CMS 2.x, 2017, 2018, 2019, 2020 has SQL Injection via the 'content.php' id parameter.

Affected products

  • Webexcels Ecommerce CMS: version 2017 only; version 2018 only; version 2019 only; version 2020 only

Published 2020-08-27. Last modified 2026-06-17.