PHP Nuke Remote SQL Query...

- AV AC AU C I A
发布: 2001-07-28
修订: 2025-04-13

PHP-Nuke is a website creation/maintenance tool written in PHP3. Many of the scripts in PHP-Nuke fail to properly validate user-supplied input. This can permit an attacker to corrupt SQL queries that include unfiltered user-supplied variables. This vulnerability is known to exist in the 'reviews.php' script. NOTE: This problem is associated with PHP 3, as PHP 4 has features in places to filter malicious content from requests.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息