b2evolution Multiple SQL Injection...

- AV AC AU C I A
发布: 2003-09-09
修订: 2025-04-13

It has been reported that b2evolution may be prone to multiple SQL injection vulnerabilities that may allow a remote attacker to inject malicious SQL syntax into database queries. The issues are caused due to a failure of the software to sanitize user-supplied input. Successful exploitation of these issues may allow an attacker to gain access to sensitive information stored in the database. This information may then be used to launch further attacks agianst a vulnerable system.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息