TinyMCE 2.0.1 - (index.php menuID)... CVE-2008-6049

- AV AC AU C I A
发布: 2009-02-04
修订: 2023-11-07

** REJECT ** SQL injection vulnerability in index.php in TinyMCE 2.0.1 allows remote attackers to execute arbitrary SQL commands via the menuID parameter. NOTE: CVE and multiple reliable third parties dispute this issue, since TinyMCE does not contain index.php or any PHP code. This may be an issue in a product that has integrated TinyMCE.

当前有2条漏洞利用/PoC
当前有0条受影响产品信息