Invision Power Board 2.0.1 – ‘QPid’ SQL Injection

29次阅读
没有评论

Invision Power Board 2.0.1 – ‘QPid’ SQL Injection

漏洞ID 1055063 漏洞类型
发布时间 2005-04-26 更新时间 2005-04-26
Invision Power Board 2.0.1 - 'QPid' SQL InjectionCVE编号 N/A
Invision Power Board 2.0.1 - 'QPid' SQL InjectionCNNVD-ID N/A
漏洞平台 PHP CVSS评分 N/A
|漏洞来源
https://www.exploit-db.com/exploits/25535
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
source: http://www.securityfocus.com/bid/13375/info

Invision Power Board is prone to an SQL injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

This issue reportedly affects Invision Power Board version 2.0.1; other versions may also be vulnerable. 

http://www.example.com/forum/index.php?act=PostCODE=02f=4t=3qpid='[SQL]

相关推荐: Einstein 注册表敏感信息存储漏洞

Einstein 注册表敏感信息存储漏洞 漏洞ID 1108488 漏洞类型 未知 发布时间 2005-02-27 更新时间 2005-02-28 CVE编号 CVE-2005-0619 CNNVD-ID CNNVD-200502-105 漏洞平台 Windo…

正文完
 0