Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The vulnerability exists within processing of loadtemplate.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the tpl input parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Schneider Electric U.motion Builder软件SQL注入漏洞
Vulnerability Description
Schneider Electric U.motion Builder software是法国施耐德电气(Schneider Electric)公司的一套为U.motion(楼宇自动化管理设备)创建自动化程序的工具。 Schneider Electric U.motion Builder软件1.3.4之前版本中的loadtemplate.php文件存在SQL注入漏洞。远程攻击者可借助‘tpl’输入参数利用该漏洞执行代码。
CVSS Information
N/A
Vulnerability Type
N/A