Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in newThread.php in XchangeBoard 1.70 Final and earlier allows remote authenticated users to execute arbitrary SQL commands via the boardID parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
XChangeboard newThread.php文件SQL注入漏洞
Vulnerability Description
Xchangeboard是基于PHP和MySQL的公告牌解决方案。 Xchangeboard的newThread.php文件中没有正确地验证对boardID参数的输入便在SQL查询中使用,远程攻击者通过提交恶意的查询请求执行SQL注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A