PHPRank MySQL Error Unauthorized...

- AV AC AU C I A
发布: 2002-10-10
修订: 2025-04-13

phpRank does not provide sufficient error checking with regards to functions which access the underlying MySQL database. As a result, when the database is inaccessible or temporarily unavailable it is possible for remote attackers to authenticate as any user to phpRank using a null password. This problem occurs because the vulnerable script still attempts to authenticate the user even though authentication data cannot be fetched from the database.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息