Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r496-rh9q-6768

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in 4nGuestbook 0.92 for PHP-Nuke 6.5 through 6.9 allows remote attackers to modify SQL statements via the entry parameter to modules.php, which can also facilitate cross-site scripting (XSS) attacks when MySQL errors are triggered.

SQL injection vulnerability in 4nGuestbook 0.92 for PHP-Nuke 6.5 through 6.9 allows remote attackers to modify SQL statements via the entry parameter to modules.php, which can also facilitate cross-site scripting (XSS) attacks when MySQL errors are triggered.

EPSS

Процентиль: 11%
0.00039
Низкий

Связанные уязвимости

nvd
около 21 года назад

SQL injection vulnerability in 4nGuestbook 0.92 for PHP-Nuke 6.5 through 6.9 allows remote attackers to modify SQL statements via the entry parameter to modules.php, which can also facilitate cross-site scripting (XSS) attacks when MySQL errors are triggered.

EPSS

Процентиль: 11%
0.00039
Низкий