Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in bluegate_seo.inc.php in the Direct URL module for xt:Commerce, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the coID parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bluegate xt:Commerce 'Direct URL'模块'bluegate_seo.inc.php'脚本SQL注入漏洞
Vulnerability Description
xt:Commerce是基于电子商务引擎的网络购物系统。 xt:Commerce的Direct URL模块的bluegate_seo.inc.php脚本存在SQL注入漏洞。在禁止magic_quotes_gpc时,远程攻击者可以借助coID参数执行任意的SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A