Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The filter function in php/src/include.php in Simple Management for BIND (aka smbind) before 0.4.8 does not anchor a certain regular expression, which allows remote attackers to conduct SQL injection attacks and execute arbitrary SQL commands via the username parameter to the admin login page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Simple Management SQL注入漏洞
Vulnerability Description
Simple Management是一个管理框架。 基于BIND (又名smbind)的Simple Management 0.4.8之前版本中的php/src/include.php文件中的过滤函数不能锚特定的正则表达式。远程攻击者可以借助管理登陆页面的用户名参数进行SQL注入攻击并执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A