Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in viewimg.php in the Paolo Palmonari Photoracer plugin 1.0 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Paolo Palmonari Photoracer id参数SQL注入漏洞
Vulnerability Description
Photoracer是一个Wordpress论坛插件,允许从管理面板创建照片竞赛 。 Photoracer插件的wp-content/plugins/photoracer/viewimg.php页面没有正确地过滤用户所提交的id参数输入,远程攻击者可以通过提交恶意查询请求执行SQL注入攻击 。
CVSS Information
N/A
Vulnerability Type
N/A