phpBB Profile.PHP SQL Injection...

- AV AC AU C I A
发布: 2003-11-08
修订: 2025-04-13

A SQL injection vulnerability has been reported for phpBB systems. phpBB, in some cases, does not sufficiently sanitize user-supplied input, which is used when constructing SQL queries to execute on the underlying database. As a result, it is possible to manipulate SQL queries. This may allow a remote attacker to modify query logic or potentially corrupt the database. SQL injection attacks may also potentially be used to exploit latent vulnerabilities in the underlying database implementation.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息