Описание
SQL injection vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in (1) opt_in_out.php.inc, (2) confirmation.php.inc, and (3) renewal.php.inc in mailinglist/.
Ссылки
- Third Party Advisory
- Broken Link
- Broken Link
- Third Party Advisory
- Broken Link
- Broken Link
Уязвимые конфигурации
Конфигурация 1Версия до 1.5.1 (включая)
cpe:2.3:a:adbnewssender_project:adbnewssender:*:*:*:*:*:*:*:*
EPSS
Процентиль: 57%
0.00354
Низкий
7.5 High
CVSS2
Дефекты
CWE-89
Связанные уязвимости
github
больше 3 лет назад
SQL injection vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in (1) opt_in_out.php.inc, (2) confirmation.php.inc, and (3) renewal.php.inc in mailinglist/.
EPSS
Процентиль: 57%
0.00354
Низкий
7.5 High
CVSS2
Дефекты
CWE-89