Описание
AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.
Ссылки
- ExploitPatchVendor Advisory
- ExploitVendor Advisory
- ExploitPatchVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:adcycle:adcycle:0.77:*:*:*:*:*:*:*
cpe:2.3:a:adcycle:adcycle:0.78b:*:*:*:*:*:*:*
EPSS
Процентиль: 89%
0.04587
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.
EPSS
Процентиль: 89%
0.04587
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other