漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
Multiple SQL injection vulnerabilities in OCS Inventory NG before 1.02.3 allow remote attackers to execute arbitrary SQL commands via (1) multiple inventory fields to the search form, reachable through index.php; or (2) the "Software name" field to the "All softwares" search form, reachable through index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
漏洞信息
N/A
漏洞
N/A
漏洞
OCS Inventory NG 多个SQL注入漏洞
漏洞信息
OCS Inventory NG(Open Computer and Software Inventory Next Generation)是一款系统管理软件,能帮助管理员掌握计算机软件安装和配置,在HTTP代理和服务器之间实现低网络流量通讯。 OCS Inventory NG存在多个SQL注入漏洞,远程攻击者可通过index.php(1)搜索表单的多个inventory字段,或(2)"all softwares"搜索表单的"software n+E29ame"字段执行任意SQL命令。
漏洞信息
N/A
漏洞
N/A