Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in login.php in DM FileManager 3.9.2, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DutchMonkey DM FileManager 'login.php'SQL注入漏洞
Vulnerability Description
DM FileManager是个DM FileManager套件产品的核心组件,主要提供文件及文件夹管理和对其他组件的连接。 DM FileManager 3.9.2版本的login.php中存在多个SQL注入漏洞,当magic_quotes_gpc被中止时, 远程攻击者可以借助(1)用户名和(2)密码字段,执行任意SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A