Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the bblogin function in functions.php in PHP-Nuke 6.x through 7.2 allows remote attackers to bypass authentication and gain access by injecting base64-encoded SQL code into the user parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Nuke Multiple SQL注入漏洞
Vulnerability Description
PHP-Nuke 6.x到7.2版本functions.php中的bblogin函数存在SQL注入漏洞。远程攻击者可以通过向user参数注入base64-encoded SQL代码绕过验证以及获得权限。
CVSS Information
N/A
Vulnerability Type
N/A