Описание
Multiple SQL injection vulnerabilities in PunBB 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) language parameter to register.php, (2) change email feature in profile.php, (3) posts or (4) topics parameter to moderate.php.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
- ExploitPatch
- PatchVendor Advisory
- PatchVendor Advisory
- ExploitPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:punbb:punbb:1.2.1:*:*:*:*:*:*:*
EPSS
Процентиль: 84%
0.02653
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
Multiple SQL injection vulnerabilities in PunBB 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) language parameter to register.php, (2) change email feature in profile.php, (3) posts or (4) topics parameter to moderate.php.
EPSS
Процентиль: 84%
0.02653
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other