Описание
SQL injection vulnerability in forum/modules/gallery/post.php in Invision Gallery 2.0.7 allows remote attackers to cause a denial of service and possibly have other impacts, as demonstrated using a "SELECT BENCHMARK" statement in the img parameter in a doaddcomment operation in index.php.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:invision_power_services:invision_gallery:2.0.7:*:*:*:*:*:*:*
EPSS
Процентиль: 55%
0.00323
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
SQL injection vulnerability in forum/modules/gallery/post.php in Invision Gallery 2.0.7 allows remote attackers to cause a denial of service and possibly have other impacts, as demonstrated using a "SELECT BENCHMARK" statement in the img parameter in a doaddcomment operation in index.php.
EPSS
Процентиль: 55%
0.00323
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other