Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the kwrd parameter in a kwl action to the default URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Realm CMS _includes/inc_routines.asp 关键词列表函数SQL注入漏洞
Vulnerability Description
Realm CMS 2.3以及之前的版本下的_includes/inc_routines.asp中的关键词列表函数存在SQL注入漏洞。远程攻击者可以借助kwl操作中到默认的URI的kwrd参数,执行任意的SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A