Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in ASP Client Check (ASPCC) 1.3 and 1.5 allows remote attackers to bypass authentication and gain unauthorized access via the password field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pascal Michaud ASP Client Check认证机制可绕过漏洞
Vulnerability Description
Pascal Michaud's ASP Client Check是一款设计为任意WEB服务提供用户名/密码验证的ASP脚本。 Pascal Michaud's ASP Client Check对用户提交给密码字段的数据缺少正确充分过滤,可导致远程攻击者无需密码访问系统。 由于对用户提交给验证机制的SQL查询的数据缺少正确的检查和判断,攻击者可以使用不正常的输入修改查询,导致攻击者可以在知道用户名的情况下无需密码访问受保护系统,包括管理员权限。
CVSS Information
N/A
Vulnerability Type
N/A