Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c32h-wf3h-rvfw

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

DeluxeBB 1.07 and earlier allows remote attackers to bypass SQL injection protection mechanisms via the login variable and certain other variables, by using lowercase "union select" or possibly other statements that do not match the uppercase "UNION SELECT."

DeluxeBB 1.07 and earlier allows remote attackers to bypass SQL injection protection mechanisms via the login variable and certain other variables, by using lowercase "union select" or possibly other statements that do not match the uppercase "UNION SELECT."

EPSS

Процентиль: 63%
0.00442
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

DeluxeBB 1.07 and earlier allows remote attackers to bypass SQL injection protection mechanisms via the login variable and certain other variables, by using lowercase "union select" or possibly other statements that do not match the uppercase "UNION SELECT."

EPSS

Процентиль: 63%
0.00442
Низкий