Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in adminlogin.asp in XTREME ASP Photo Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
XtremeASP PhotoGallery Adminlogin.ASP SQL注入漏洞
Vulnerability Description
XTREME ASP Photo Gallery是一款基于WEB的图象管理程序。 XTREME ASP Photo Gallery包含的管理脚本不正确处理用户提交的验证数据,远程攻击者可以利用这个漏洞无需验证信息未授权访问应用程序。 问题存在与'admin/adminlogin.asp'脚本中,由于对用户名和密码信息缺少充分过滤,提交恶意数据可绕过验证,未授权访问应用程序。
CVSS Information
N/A
Vulnerability Type
N/A