PHP-Nuke User/Admin Cookie SQL...

- AV AC AU C I A
发布: 2003-05-30
修订: 2025-04-13

PHP-Nuke, with Web_Links module and one link active, is reported to be prone to SQL injection attacks during authentication. This is due to insufficient sanitization of cookie values, which will be used in database queries. This could permit an attacker to inject SQL code and ultimately disclose admin and user password hashes.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息