Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to hijack the authentication of users for requests that execute arbitrary SQL commands via the cmd parameter to sys/sys/listaBD2.jsp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JSP/MySQL Administrador Web 跨站请求伪造漏洞
Vulnerability Description
JSP/MySQL Administrador Web是一套在Web服务器上使用JSP技术远程管理MySQL数据库的工具。 JSP/MySQL Administrador Web 1版本中存在跨站请求伪造漏洞,该漏洞源于sys/sys/listaBD2.jsp脚本没有充分过滤‘cmd’参数。远程攻击者可利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A