Описание
SQL injection vulnerability in includes/mambo.php in Mambo LaiThai 4.5.4 SP2 and earlier allows remote attackers to execute arbitrary SQL commands via the usercookie[password] cookie parameter.
Ссылки
- PatchURL Repurposed
- PatchVendor Advisory
- PatchVendor Advisory
- PatchURL Repurposed
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.5.4 (включая)
cpe:2.3:a:mamboxchange:laithai:*:sp2:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00484
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
SQL injection vulnerability in includes/mambo.php in Mambo LaiThai 4.5.4 SP2 and earlier allows remote attackers to execute arbitrary SQL commands via the usercookie[password] cookie parameter.
EPSS
Процентиль: 65%
0.00484
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other