Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the gp_LoadUserFromHash function in functions_hash.php in the Group Pay module 1.5 and earlier for WHMCS allows remote attackers to execute arbitrary SQL commands via the hash parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WHMCS Group Pay模块SQL注入漏洞
Vulnerability Description
WHMCS(WHM Complete Solution)是英国WHMCS公司的一套全面支持域名注册管理解析、主机开通管理、VPS开通管理和服务器管理的一站式主机管理软件。 WHMCS的Group Pay模块1.5及之前的版本中的functions_hash.php中的‘gp_LoadUserFromHash’函数中存在SQL注入漏洞。远程攻击者可通过hash参数利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A