snitz_exec.txt...

- AV AC AU C I A
发布: 2003-05-13
修订: 2025-04-13

Snitz Forums v3.3.3 has an SQL injection vulnerability in its register.asp page with its Email variable. Because register.asp does not check user input, remote users can execute stored procedures, such as xp_cmdshell, to arbitrarily run non-interactive commands on the system.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息