Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in action.php in Leed (Light Feed), possibly before 1.5 Stable, allows remote attackers to execute arbitrary SQL commands via the id parameter in a removeFolder action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Leed SQL注入漏洞
Vulnerability Description
Leed(Light Feed)是一套轻量级的基于PHP的RSS/ATOM新闻聚合阅读器,可通过该阅读器获取RSS、ATOM来源的最新报道或内容信息。 Leed中的action.php脚本中存在SQL注入漏洞。远程攻击者可借助removeFolder操作中的id参数利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A