Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the show_stats module in Arcade.php in IbProArcade allows remote attackers to execute arbitrary SQL code via the gameid parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBProArcade远程SQL注入漏洞
Vulnerability Description
IbProArcade是一款流行的论坛程序。 IbProArcade不正确过滤用户提交的URL参数,远程攻击者可以利用这个漏洞进行SQL注入攻击,获得敏感信息。 问题是index.php对用户提交'gameid'参数的数据缺少过滤,提交恶意SQL命令作为此值参数,可更改原来的SQL逻辑,可能获得敏感信息或修改数据库。
CVSS Information
N/A
Vulnerability Type
N/A