Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in pm.php in DeluxeBB 1.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via a delete##### parameter in a Delete action, a different vector than CVE-2005-2989.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DeluxeBB 'pm.php'delete*参数SQL注入漏洞
Vulnerability Description
DeluxeBB是一款基于PHP的论坛程序。 如果将"*"设置为有效的消息标识符的话,DeluxeBB的pm.php模块中就无法正确地验证对delete*参数的输入,远程攻击者通过提交恶意请求,执行SQL注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A