Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in Bank Soft Systems (BSS) RBS BS-Client 3.17.9 allow remote attackers to execute arbitrary SQL commands via the (1) CARDS or (2) XACTION parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bank Soft Systems RBS BS-Client SQL注入漏洞
Vulnerability Description
Bank Soft Systems(BSS)RBS BS-Client是俄罗斯BSS公司开发的一套用于英国苏格兰皇家银行(RBS)的网上银行系统。该系统提供多种客户端(如互联网客户端、移动客户端等),欺诈分析和网上银行连接向导等。 BSS RBS BS-Client 3.17.9版本中存在SQL注入漏洞。远程攻击者可通过‘CARDS’或‘XACTION’参数利用该漏洞注入任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A