Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerabilities in the (1) PostgreSQL or (2) MySQL authentication modules for teapop 0.3.5 and earlier allow attackers to execute arbitrary SQL and possibly gain privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Teapop SQL注入导致非授权数据库操作漏洞
Vulnerability Description
teapop是一款POP3服务器,支持通过PostgreSQL或者MySQL数据库验证用户。 teapop在处理验证过程中没有过滤用户提交的字符串过滤就直接进行SQL查询处理,远程攻击者可以利用这个漏洞注入恶意SQL命令,可泄露数据库信息或破坏数据库。 目前没有详细漏洞细节提供。
CVSS Information
N/A
Vulnerability Type
N/A