Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in download.php in Horizon Quick Content Management System (QCMS) 4.0 and earlier allows remote to execute arbitrary SQL commands via the category parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Horizon Quick Content Management System SQL注入漏洞
Vulnerability Description
Horizon Quick Content Management System(QCMS)是一套开源的快速内容管理系统(CMS)。该系统支持文件上传、幻灯片播放、客户关系管理、Youtube和Google地图插件等。 Horizon QCMS 4.0及之前的版本中的download.php脚本中存在SQL注入漏洞。远程攻击者可借助‘category’参数利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A