ibProArcade User ID SQL Injection...

- AV AC AU C I A
发布: 2005-11-05
修订: 2025-04-13

A SQL injection attack due to an input validation error has been reported. The vulnerability is said to be in the "index.php" scripts on both PowerBoard and vBulletin installations when the module is enabled. The HTML variable "id" for PowerBoard users and "userid" for vBulletin users is reportedly not properly escaped before it is embedded in a SQL query string.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息