Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, which can inject at most 32 characters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Invision Power Board index.php ck参数远程SQL注入漏洞
Vulnerability Description
Invision Power Board是一款流行的PHP论坛程序 Invision Power Board的实现上存在输入验证漏洞,远程攻击者可能利用此漏洞执行SQL注入攻击。 在SQL查询中使用之前Invision Power Board没有正确地过滤index.php中对"ck"参数的输入,导致可以通过注入任意SQL代码(仅限32个字符)操控SQL查询。 sources/lib/func_taskmanager.php 70行中的漏洞代码: $this->cron_key = substr( tri
CVSS Information
N/A
Vulnerability Type
N/A