Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in view_user.php in WowBB 1.6, 1.61, and 1.62 allows remote attackers to execute arbitrary SQL commands via the sort_by parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WowBB view_user.php远程SQL注入漏洞
Vulnerability Description
WowBB是一款界面友好、可完全自定义设置的PHP/MySQL论坛程序。 WowBB处理用户请求时存在SQL注入漏洞,远程攻击者可能利用此漏洞对数据库执行非法操作。 WowBB的view_user.php脚本没有对sort变量值做充分的检查过滤,远程攻击者可以在输入中插入特定的SQL命令串,从而非法操作数据库。
CVSS Information
N/A
Vulnerability Type
N/A