Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AIST NetCat 'password_recovery.php' SQL注入漏洞
Vulnerability Description
Netcat 是一款简单的Unix工具,使用UDP和TCP协议。 它是一个可靠的容易被其他程序所启用的后台操作工具,同时它也被用作网络的测试工具或黑客工具。 AIST NetCat 3.12 及其早期版本的modules/auth/password_recovery.php中存在SQL注入漏洞, 当 magic_quotes_gpc被中止时, 远程攻击者可以借助查询字符执行任意SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A