PHPCatalog ID Parameter SQL...

- AV AC AU C I A
发布: 2003-12-29
修订: 2025-04-13

A vulnerability has been reported to exist in PHPCatalog that may allow a remote user to inject malicious SQL syntax into database queries. The problem reportedly exists in the URI parameters of PHPCatalog. This issue is caused by insufficient sanitization of user-supplied data. A remote attacker may exploit this issue to influence SQL query logic to have unauthorized SQL queries executed in the database.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息