Описание
Multiple SQL injection vulnerabilities in Phorum 5.0.11 and earlier allow remote attackers to modify SQL statements via (1) the query string in read.php or (2) unknown vectors in file.php.
Ссылки
- Vendor Advisory
- Exploit
- ExploitVendor Advisory
- ExploitPatch
- Vendor Advisory
- Exploit
- ExploitVendor Advisory
- ExploitPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phorum:phorum:5.0.11:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01233
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Multiple SQL injection vulnerabilities in Phorum 5.0.11 and earlier allow remote attackers to modify SQL statements via (1) the query string in read.php or (2) unknown vectors in file.php.
EPSS
Процентиль: 79%
0.01233
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other