Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In install/page_dbsettings.php in the Core distribution of XOOPS 2.5.8.1, unfiltered data passed to CREATE and ALTER SQL queries caused SQL Injection in the database settings page, related to use of GBK in CHARACTER SET and COLLATE clauses.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
XOOPS Core SQL注入漏洞
Vulnerability Description
XOOPS(eXtensible Object Oriented Portal System)是XOOPS团队开发维护的一套开源的基于PHP和MySQL的内容管理系统。该系统可用于创建各种网络社区。XOOPS Core是其中的一个核心存储库。 XOOPS Core 2.5.8.1版本中的install/page_dbsettings.php文件的数据库设置页面存在SQL注入漏洞。远程攻击可利用该漏洞执行SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A