Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in Php/Functions/log_function.php in phpTrafficA 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via a User-Agent HTTP header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpTrafficA SQL注入漏洞
Vulnerability Description
phpTrafficA是一套基于PHP和MySQL的用于网站流量分析的统计工具。该工具支持统计网站流量(如自哪些搜索引擎、关健字等),分析浏览网站所用的操作系统、浏览器和访问者停留时间等。 phpTrafficA 2.3及之前版本的Php/Functions/log_function.php脚本中存在SQL注入漏洞。远程攻击者可借助User-Agent HTTP头利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A