Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in Abarcar Realty Portal allow remote attackers to execute arbitrary SQL commands via the (1) neid parameter to newsdetails.php, or the (2) slid parameter to slistl.php. NOTE: the cat vector is already covered by CVE-2006-2853. NOTE: the vendor has notified CVE that the current version only creates static pages, and that slistl.php/slid never existed in any version
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Abarcar Realty Portal多个SQL注入漏洞
Vulnerability Description
**争议** Abarcar Realty Portal中存在多个SQL注入漏洞,远程攻击者可通过(1)传到newsdetails.php的neid参数和(2)传给slistl.php的slid参数执行任意SQL命令。注:cat向量已包含在CVE-2006-2853中。注:厂商已经通知CVE当前版本只创建静态页,在任一版本中都不存在有slistl.php/slid。
CVSS Information
N/A
Vulnerability Type
N/A