Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the user profile edit module in profile.php for PunBB 1.2.5 and earlier allows remote attackers to execute arbitrary SQL statements via the temp array, which is not initialized before it is used and prevents the attacker-supplied portions of the array from being properly escaped.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PunBB profile.php SQL注入漏洞
Vulnerability Description
PunBB是一款Web论坛系统。 PunBB 1.2.5及之前版本中profile.php的用户概要编辑模块存在SQL注入漏洞。 远程攻击者可通过临时数组执行任意SQL命令,该临时数组未在使用前进行初始化,因此会绕过为避开攻击者所提供的数组选项。
CVSS Information
N/A
Vulnerability Type
N/A