Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in classified.php in phpBazar 2.1.1fix and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter, a different vector than CVE-2008-3767.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Smartisoft phpBazar 'classified.php' SQL注入漏洞
Vulnerability Description
phpBazar是一款基于PHP的WEB应用程序phpBazar 2.1.1fix及其早期版本的classified.php存在SQL注入漏洞,远程攻击者可以借助catid参数执行任意SQL指令。这是与CVE-2008-3767不同的向量。
CVSS Information
N/A
Vulnerability Type
N/A