Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
filter.php in PHPFootball 1.6 and earlier allows remote attackers to retrieve password hashes via a request with an Accounts value for the dbtable parameter, in conjunction with a Password value for the dbfield parameter. NOTE: this has been reported as a SQL injection vulnerability by some sources, but the provenance of that information is unknown.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPFootball 'filter.php'信息泄露漏洞
Vulnerability Description
PHPFootball是足球球队管理软件用PHP编写的,使用MySQL数据库。 PHPFootball 1.6及其早期版本的filter.php允许远程攻击者可以借助对dbtable参数提交的含有帐户值和密码值的请求来找回密码信息。注意: 该漏洞被某些单位指出是一个SQL注入漏洞。
CVSS Information
N/A
Vulnerability Type
N/A