Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in comment.php in BlueCMS 1.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header in a send action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BlueCMS 'comment.php' SQL注入漏洞
Vulnerability Description
BlueCMS是一款免费的由开源组合PHP+MYSQL开发的专业地方门户系统,专注于地方门户的CMS。 BlueCMS 1.6版本的comment.php中存在SQL注入漏洞。远程攻击者可借助发送操作中的X-Forwarded-For HTTP头执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A