Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and earlier allows remote attackers to execute arbitrary SQL commands via the day parameter in a dayview action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MyBB calendar.php脚本远程SQL注入漏洞
Vulnerability Description
MyBB是一款流行的Web论坛程序。 MyBB的实现上存在输入验证漏洞,远程攻击者可能利用此漏洞非授权访问操作数据库。MyBB的calendar.php脚本没有对year、month或day参数数据做充分的检查过滤,远程攻击者可以在输入数据中插入特定的SQL语句,导致攻击者浏览、添加或修改删除后端数据库中的信息。
CVSS Information
N/A
Vulnerability Type
N/A