CoolForum Multiple Input Validation...

- AV AC AU C I A
发布: 2005-01-28
修订: 2025-04-13

CoolForum is reported prone to multiple vulnerabilities resulting from input validation errors. These issues may allow an attacker to carry out HTML and SQL injection attacks. The following specific issues were identified: It has been reported that the application is prone to multiple SQL injection vulnerabilities that may allow a remote attacker to inject arbitrary SQL queries into the database used by CoolForum. An HTML injection vulnerability may also affect the application. This issue can allow for theft of cookie based authentication credentials and other attacks. CoolForum 0.7.2 is reported prone to these issues. It is likely that other versions are vulnerable as well.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息