Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute other commands on the server's underlying database via the (1) cat_id or (2) sub_id parameters in adDetail.asp, or (2) the password parameter in the login form.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DUware Software多个溢出漏洞
Vulnerability Description
DUware DUclassified 4.0至4.2版本存在多个SQL注入漏洞。远程攻击者可以借助(1) cat_id或(2)adDetail.asp的sub_id参数或(3)login表格的密码参数绕过认证并执行其他服务器基本数据的其他命令。
CVSS Information
N/A
Vulnerability Type
N/A