F2HTML.PL SQL Injection Vulnerability...

- AV AC AU C I A
发布: 2002-06-28
修订: 2025-04-13

The f2html.pl script does not sufficiently validate filenames before passing them into SQL queries. In the instance that f2html.pl is used to search a directory which may be accessible to untrusted local users, it may be possible to launch a SQL injection attack via a maliciously crafted filename.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息