PostNuke Phoenix CATID Parameter...

- AV AC AU C I A
发布: 2005-02-28
修订: 2025-04-13

PostNuke Phoenix is reported prone to an SQL injection vulnerability. This issue arises due to insufficient sanitization of user-supplied input. It is reported that issue presents itself when malicious SQL syntax is issued to the application through the 'catid' variable. PostNuke 0.760-RC2 and prior versions are reported vulnerable.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息