Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in the BookLibrary Basic (com_booklibrary) component 1.5.3 before 1.5.3_2010_06_20 for Joomla! allow remote attackers to execute arbitrary SQL commands via the bid[] parameter in a (1) lend_request or (2) save_lend_request action to index.php, the id parameter in a (3) mdownload or (4) downitsf action to index.php, or (5) the searchtext parameter in a search action to index.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ordasoft BookLibrary Basic组件多个SQL注入漏洞
Vulnerability Description
Joomla!是一款开放源码的内容管理系统(CMS)。 Joomla!的组件BookLibrary Basic (com_booklibrary)1.5.3_2010_06_20版本之前的1.5.3版本中存在多个SQL注入漏洞。远程攻击者可以借助针对index.php的(1) lend_request 或者 (2) save_lend_request的参数bid[];针对index.php的(3) mdownload 或(4) downitsf操作的id参数;或者针对index.php的search操作的
CVSS Information
N/A
Vulnerability Type
N/A