Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via the HTTP Referer header (HTTP_REFERER variable).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Francisco Burzi PHP-Nuke 'index.php'多个SQL注入漏洞
Vulnerability Description
PHP-Nuke是一个广为流行的网站创建和管理工具,它可以使用很多数据库软件作为后端,比如MySQL、PostgreSQL、mSQL、Interbase、Sybase等。 Francisco Burzi PHP-Nuke 8.0 终极版及其早期版本的index.php中存在SQL注入漏洞,当"HTTP Referers" block被激活时,远程攻击者可以通过HTTP参考页眉,执行任意SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A