Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in Node Vote 5.x before 5.x-1.1 and 6.x before 6.x-1.0, a module for Drupal, when "Allow user to vote again" is enabled, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to a "previously cast vote."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal Node Vote Module Cast Vote SQL注入漏洞
Vulnerability Description
Drupal Node Vote模块存在SQL注入漏洞。当"允许用户再次投票"被激活时,远程认证用户可以借助与"之前的cast投票"相关的未明向量,来执行任意的SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A