{"id":"CVE-2020-24193","title":"A SQL injection vulnerability in login in Sourcecodetester Daily Tracker System 1.0 allows unauthenticated user to execute authentication bypass with SQL injection via the email parameter.","summary":"A SQL injection vulnerability in login in Sourcecodetester Daily Tracker System 1.0 allows unauthenticated user to execute authentication bypass with SQL injection via the email parameter.","severity":"critical","cvss":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-89"],"vendor":"daily_tracker_system_project","product":"daily_tracker_system","affected":["daily_tracker_system = 1.0"],"published":"2020-09-03","updated":"2026-07-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2020-24193","references":[{"url":"https://www.exploit-db.com/exploits/48787","label":"cve@mitre.org"},{"url":"http://sourcecodetester.com","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.exploit-db.com/exploits/48787","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.02612,"epssPercentile":0.84753,"ingestedAt":"2026-07-05T00:59:25.472Z","slug":"CVE-2020-24193","body":"## Overview\n\nA SQL injection vulnerability in login in Sourcecodetester Daily Tracker System 1.0 allows unauthenticated user to execute authentication bypass with SQL injection via the email parameter.\n\n## Affected\n\n- `daily_tracker_system = 1.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":54,"depthScoreParts":{"impact":53.9,"likelihood":0.5,"exploitation":0,"ransomware":0},"changes":[]}