Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in Shader TV (Beta) allow remote authenticated administrators to execute arbitrary SQL commands via the sid parameter to (1) kanal.asp, (2) google.asp, and (3) hakk.asp in yonet/; and allow remote attackers to execute arbitrary SQL commands via the (4) username or (5) password fields to yonet/default.asp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Aspindir Shader TV多个SQL注入漏洞
Vulnerability Description
Shader TV测试第二版存在多个SQL注入漏洞。远程认证管理员可以借助到yonet/中的(1)kanal.asp,(2)google.asp和(3)hakk.asp的sid参数,执行任意的SQL指令;远程攻击者可以借助到yonet/default.asp的(4)用户名或(5)密码字段,执行任意的SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A